1.1. http://tacoda.at.atwola.com/rtx/r.js [N cookie]
1.2. http://tacoda.at.atwola.com/rtx/r.js [si parameter]
2. Cookie scoped to parent domain
3. Cookie without HttpOnly flag set
Severity: | High |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ACX&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://an.tacoda.net/an User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.133 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JEB2=4D69B03E6E651A4 |
HTTP/1.1 200 OK Date: Wed, 16 Mar 2011 20:45:55 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Wed, 16 Mar 2011 21:00:55 GMT Set-Cookie: ATTACID=a3Z0aWQ9MTZs Set-Cookie: ANRTT=52576^1^1300415401 Set-Cookie: Tsid=0^1300308355 Set-Cookie: TData=99999|^|61674|60493 Set-Cookie: N=2:976f203638d0a2f9 a893082498e,976f203638d0a2f96e8 Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Set-Cookie: eadx=1; path=/; expires=Thu, 15-Mar-12 20:45:55 GMT; domain=tacoda.at.atwola ntCoent-Length: 312 Content-Type: application/x-javascript Content-Length: 312 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16lsqii1n1a3cr'; var ANSL='99999|^|61674|60493 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ACX&si=73674%0d%0af0f1d82776c&pi=M&xs=3&pu=http%253A/ Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://an.tacoda.net/an User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.133 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JEB2=4D69B03E6E651A4 |
HTTP/1.1 200 OK Date: Wed, 16 Mar 2011 20:45:54 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Wed, 16 Mar 2011 21:00:54 GMT Set-Cookie: ATTACID=a3Z0aWQ9MTZs Set-Cookie: ANRTT=52576^1^1300415401 Set-Cookie: Tsid=0^1300308354 f0f1d82776c^1300308354^1300310154; path=/; expires=Wed, 16-Mar-11 21:15:54 GMT; domain=tacoda.at.atwola Set-Cookie: TData=99999|^|61674|60493 Set-Cookie: N=2:976f203638d0a2f9 Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Set-Cookie: eadx=1; path=/; expires=Thu, 15-Mar-12 20:45:54 GMT; domain=tacoda.at.atwola Cteonnt-Length: 312 Content-Type: application/x-javascript Content-Length: 312 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16lsqii1n1a3cr'; var ANSL='99999|^|61674|60493 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ACX&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://an.tacoda.net/an User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.133 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JEB2=4D69B03E6E651A4 |
HTTP/1.1 200 OK Date: Wed, 16 Mar 2011 20:45:16 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Wed, 16 Mar 2011 21:00:16 GMT Set-Cookie: ATTACID=a3Z0aWQ9MTZs Set-Cookie: ANRTT=52576^1^1300415401 Set-Cookie: Tsid=0^1300308316 Set-Cookie: TData=99999|^|61674|60493 Set-Cookie: N=2:976f203638d0a2f9 Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Set-Cookie: eadx=1; path=/; expires=Thu, 15-Mar-12 20:45:16 GMT; domain=tacoda.at.atwola ntCoent-Length: 312 Content-Type: application/x-javascript Content-Length: 312 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16lsqii1n1a3cr'; var ANSL='99999|^|61674|60493 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=ACX&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://an.tacoda.net/an User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.133 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JEB2=4D69B03E6E651A4 |
HTTP/1.1 200 OK Date: Wed, 16 Mar 2011 20:45:16 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Wed, 16 Mar 2011 21:00:16 GMT Set-Cookie: ATTACID=a3Z0aWQ9MTZs Set-Cookie: ANRTT=52576^1^1300415401 Set-Cookie: Tsid=0^1300308316 Set-Cookie: TData=99999|^|61674|60493 Set-Cookie: N=2:976f203638d0a2f9 Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Set-Cookie: eadx=1; path=/; expires=Thu, 15-Mar-12 20:45:16 GMT; domain=tacoda.at.atwola ntCoent-Length: 312 Content-Type: application/x-javascript Content-Length: 312 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16lsqii1n1a3cr'; var ANSL='99999|^|61674|60493 ...[SNIP]... |