Hi NON,

As you see from this scan, some insecurity still exists: https://asafaweb.com/Scan?Url=http://forum.avast.com/index.php
Excessive header warning was thwarted by using Avast Website Server - a non-existing server…

2 cookies are being set without the “HttpOnly” flag being set (name : value):

polonus