See: from scanning URL: htxp://
via: htxp://
via: htxp://
via: htxp://
via: htxp://
going to: -//
warnings on site:
Blacklisted by Google Safebrowsing
So what is in that code there that is open to be manipulated? Sink is data in var data=
We can edit and enter the data by hand. Furthermore: .location and inner.HTML.
See for script code:
For security research only, open above link with NoScript active and inside a VM.
This in the code is “not defined” for referer
Read broken for IE:
Patch - diff --git a/templates/html.tpl.php b/templates/html.tpl.php
index a1c9c70..79d5cdc 100644
--- a/templates/html.tpl.php
+++ b/templates/html.tpl.php
@@ -5,7 +5,7 @@
<title><?php print $head_title; ?></title>
<?php print $styles; ?>
<?php print $scripts; ?>
-<!--[if lt IE 9]><script src=""></script><![endif]-->
+<!--[if lt IE 9]><script src="//"></script><![endif]-->
<body class="<?php print $classes; ?>"<?php print $attributes; ?>>
<?php print $page_top; ?>
This also has: c.innerHTML= sink.
With further vulnerable code residing here: htxps://
This means that the address is available and that you can claim it at htxp://
Site was earlier vullnerable to Heartbleed and still is not secure in the eyes of Netcraft’s report,
see: (risk 2 out of 10!)
Just some personal musings here about insecurities we could detect via cold reconnaissance 3rd party scanning, issues I have just skimmed while going over the site’s code source to help awareness.
and naturally I won’t go into any particulars.
What is helping to solve such an insecure situation is the right server and CMS updates and patches, implementation of the right “HTTP Header Security” configuration and a decent check to prevent input manipulation, aka input validation.
Without these issues addressed the website could become prey to attacks any moment.