27.09.2014 Views

ScanAlert - Report - Thane

ScanAlert - Report - Thane

ScanAlert - Report - Thane

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

city=80000002<br />

state=80000002<br />

zip=80000002<br />

areacode=x';<br />

prefix=`80<br />

last4=0<br />

email=80000002<br />

sex=A<br />

sex=B<br />

married=A<br />

married=B<br />

Post<br />

purchased=A<br />

purchased=B<br />

purchased=C<br />

purchased=D<br />

purchased=E<br />

dobmonth=0<br />

dobday=0<br />

dobyear=0<br />

education=4319f684-0c89-4edc-9d8a-c56752eb905f<br />

goal=4319f684-0c89-4edc-9d8a-c56752eb905f<br />

equip1=A<br />

equip2=A<br />

equip3=A<br />

equip4=A<br />

equip5=A<br />

equip6=A<br />

people=4319f684-0c89-4edc-9d8a-c56752eb905f<br />

room=4319f684-0c89-4edc-9d8a-c56752eb905f<br />

enter=SUBMIT<br />

reset=CLEAR<br />

Headers Content-Type=application%2Fx-www-form-urlencoded<br />

Links<br />

Top sites vulnerable to hackers<br />

The Cross Site Scripting FAQ<br />

An Oldie but Goodie: The Cross-Site Scripting Vulnerability<br />

www.cgisecurity.com/articles/xss-faq.shtml<br />

www.developer.com/lang/article.php/947041<br />

www.vnunet.com/vnunet/news/2116667/top-sites-vulnerable-hackers<br />

Apache: Cross Site Scripting Info<br />

Apache: ???<br />

The Cross-Site Scripting Vulnerability<br />

Top sites vulnerable to hackers<br />

Related<br />

CERT CA-2000-02<br />

Directory Scanner<br />

Port First Detected Category<br />

80 22-OCT-2006 00:29 Web Application<br />

Protocol Fix Difficulty Impact<br />

HTTP Medium Information Disclosure<br />

Description<br />

During an audit common directories are looked for. This may result in non public Web pages being found.<br />

Solution<br />

Make sure that these directories are intented for the public.<br />

Result<br />

Method GET Protocol http Port 80 Demo<br />

Path /images/<br />

Links<br />

None<br />

Related<br />

None<br />

Directory Scanner<br />

Port First Detected Category<br />

443 22-OCT-2006 00:29 Web Application<br />

Confidential - <strong>ScanAlert</strong> Security Audit <strong>Report</strong><br />

Page 13

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!