Scan Time
Scan Duration
Description
15/10/2020 04:51 PM
00:00:19:31
Php Test Website
Total Requests: 19,660
Average Speed: 16.8 r/s

1. Out of Scope Links41 TOTAL

Reason URL
Out of Scope [32 Link(s)] http://www.acunetix.com/
https://metadata.packet.net/metadata12
http://169.254.169.254/latest/meta-data/public-hostname&lt
http://169.254.169.254/opc/v1/instance12
http://127.0.0.1:22/
http://www.w3.org/1999/xhtml
http://blog.mindedsecurity.com/2009/05/client-side-http-parameter-pollution.html
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,29,0
http://www.eclectasy.com/Fractal-Explorer/index.html
https://www.acunetix.com/vulnerability-scanner/php-security-scanner/
http://www.macromedia.com/shockwave/download/index.cgi?P1_Prod_Version=ShockwaveFlash
https://www.acunetix.com/
http://176.28.50.165:22/
https://metadata.packet.net/metadata&lt
http://www.w3.org/TR/html4/loose.dtd
http://169.254.169.254/opc/v1/instance&lt
http://169.254.169.254/opc/v1/instance
http://176.28.50.165:2212/
http://127.0.0.1:2212/
http://169.254.169.254/latest/meta-data/public-hostname12
https://metadata.packet.net/metadata&quot
http://176.28.50.165:3306/
http://127.0.0.1:3306/
http://169.254.169.254/latest/meta-data/public-hostname
https://metadata.packet.net/metadata
http://www.zend.com/
http://www.php.net/
http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd
http://169.254.169.254/opc/v1/instance&quot
https://www.acunetix.com/vulnerability-scanner/
http://169.254.169.254/latest/meta-data/public-hostname&quot
https://www.acunetix.com/blog/articles/prevent-sql-injection-vulnerabilities-in-php-applications/
Extension Blacklisted [7 Link(s)] http://testphp.vulnweb.com/Flash/add.swf
http://testphp.vulnweb.com/Flash/add.fla
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/3.jpg
http://testphp.vulnweb.com/images/logo.gif
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/1.jpg
http://testphp.vulnweb.com/images/remark.gif
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/2.jpg
Max. Page Visit Limit Exceeded [1 Link(s)] http://testphp.vulnweb.com/showimage.php?file=./pictures/6.jpg
Max. Signature Limit Exceeded [1 Link(s)] http://testphp.vulnweb.com/showimage.php?file=./pictures/6.jpg

2. Proofs5 TOTAL

Identified Database Name

acuart

Identified Database Version

5.1.73-0ubuntu0.10.04.1

Identified Database User

acuart@lo

Identified Database User

acuart@localhost

Identified Database Version

5.1.73 0u

3. Crawling Performance11 TOTAL

Parsing Source Crawled Link Count Total Response Time Avg Response Time
Resource Finder 99
62 [403 Forbidden]
2 [0 0]
24 [404 NotFound]
11 [502 BadGateway]
00:00:21:667
00:00:14:660
00:00:00:02
00:00:04:678
00:00:02:326
00:00:00:219
00:00:00:236
00:00:00:01
00:00:00:195
00:00:00:211
Text Parser Form 11995
6 [504 GatewayTimeout]
11309 [200 OK]
680 [302 Redirect]
01:38:52:336
00:06:01:181
01:21:45:119
00:11:06:35
00:00:00:495
00:01:00:197
00:00:00:434
00:00:00:979
Text Parser 6315
444 [404 NotFound]
5808 [200 OK]
63 [302 Redirect]
00:36:46:486
00:01:25:85
00:35:09:11
00:00:12:389
00:00:00:349
00:00:00:192
00:00:00:363
00:00:00:197
Sitemap 2
2 [404 NotFound]
00:00:00:387
00:00:00:387
00:00:00:194
00:00:00:194
XML HTTP Request 1899
1899 [200 OK]
00:06:22:681
00:06:22:681
00:00:00:202
00:00:00:202
DOM Parser Extracted Resource 44
44 [200 OK]
00:00:08:602
00:00:08:602
00:00:00:196
00:00:00:196
Unspecified 1044
1 [403 Forbidden]
241 [404 NotFound]
802 [200 OK]
00:03:28:410
00:00:00:197
00:00:46:358
00:02:41:854
00:00:00:200
00:00:00:198
00:00:00:192
00:00:00:202
Related Link 1570
32 [403 Forbidden]
787 [404 NotFound]
685 [200 OK]
66 [302 Redirect]
00:05:10:638
00:00:06:163
00:02:31:567
00:02:19:885
00:00:13:21
00:00:00:198
00:00:00:193
00:00:00:193
00:00:00:204
00:00:00:197
.DS_Store Modifier 9
9 [404 NotFound]
00:00:01:797
00:00:01:797
00:00:00:200
00:00:00:200
DOM Parser 560
39 [404 NotFound]
497 [200 OK]
24 [302 Redirect]
00:04:21:914
00:02:37:371
00:01:39:192
00:00:05:350
00:00:00:468
00:00:04:35
00:00:00:200
00:00:00:223
Start Link 102
33 [404 NotFound]
2 [405 MethodNotAllowed]
67 [200 OK]
00:00:19:992
00:00:06:317
00:00:00:399
00:00:13:274
00:00:00:196
00:00:00:191
00:00:00:200
00:00:00:198
Total 23639 02:35:54:914 00:00:00:396

4. Scan Performance28 TOTAL

Source Execution Count Total Elapsed Average
SQL Injection (Blind) 41
00:45:17:797
00:01:06:288
Cross-site Scripting 41
00:27:44:504
00:00:40:598
SQL Injection (Boolean) 41
00:23:31:51
00:00:34:416
Crawling 266
00:20:58:67
00:00:04:730
Cross-site Scripting (Blind) 41
00:17:50:20
00:00:26:98
Local File Inclusion 41
00:17:27:891
00:00:25:558
Open Redirection 41
00:12:13:230
00:00:17:884
Code Evaluation (Out of Band) 41
00:10:31:04
00:00:15:390
Code Evaluation 41
00:09:32:705
00:00:13:968
Server-Side Request Forgery (Pattern Based) 41
00:08:32:890
00:00:12:510
SQL Injection (Error Based) 41
00:06:34:587
00:00:09:624
Command Injection 41
00:05:11:409
00:00:07:595
Remote File Inclusion (Out of Band) 41
00:05:02:779
00:00:07:385
HTTP Header Injection 41
00:04:37:827
00:00:06:776
Server-Side Request Forgery (DNS) 41
00:03:50:864
00:00:05:631
XML External Entity (Out of Band) 41
00:03:34:59
00:00:05:221
Command Injection (Blind) 41
00:03:23:170
00:00:04:955
Remote File Inclusion 41
00:03:23:63
00:00:04:953
XML External Entity 41
00:02:31:421
00:00:03:693
Server-Side Template Injection 41
00:02:26:561
00:00:03:575
Cross-Origin Resource Sharing (CORS) 41
00:01:24:117
00:00:02:52
Static Resources (All Paths) 41
00:01:22:283
00:00:02:07
Web App Fingerprint 41
00:01:14:820
00:00:01:825
Insecure Reflected Content 41
00:00:49:515
00:00:01:208
Unicode Transformation (Best-Fit Mapping) 41
00:00:28:814
00:00:00:703
Reflected File Download 41
00:00:25:945
00:00:00:633
File Upload 41
00:00:01:580
00:00:00:39
HTTP Methods 41
00:00:01:460
00:00:00:36
Total 1373 04:00:03:433 00:00:10:490

5. AJAX / XML HTTP Requests4 TOTAL

AJAX / XMLHttpRequest found on the target application. You can use the parameter name listed here to provide a default value when attacking. To add a default value, please use Form Values in your Scan Policy Settings and make sure you have selected Exact as the match type.

URL Parameter
GET http://testphp.vulnweb.com/AJAX/artists.php
POST http://testphp.vulnweb.com/AJAX/showxml.php
  • /xml[1]/node[1]/text()[1]
  • /xml[1]/node[2]/text()[1]
  • /xml[1]/node[1]/@name
  • /xml[1]/node[2]/@name
GET http://testphp.vulnweb.com/AJAX/titles.php
GET http://testphp.vulnweb.com/AJAX/categories.php

6. Site Profile1 TOTAL

Out of date components (JS libraries, Server-side applications or Database servers etc.) are highlighted in yellow.

testphp.vulnweb.com
Server-side Applications PHP 5.3.10
Database Servers MySQL 5.1.73
Database User acuart@localhost
SSL Not Used

7. Not Founds24 TOTAL

Custom 404 Settings
Auto Custom 404
Maximum 404 Signatures: 1000

If you think that the below list is wrong, consider to change your Custom 404 settings in policy settings.

URL HTTP Status Code
http://testphp.vulnweb.com/Mod_Rewrite_Shop/BuyProduct-3/ 200
http://testphp.vulnweb.com/server-status12 404
http://testphp.vulnweb.com/hj/var/www/artists.php 404
http://testphp.vulnweb.com/hj/var/www/showimage.php 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/BuyProduct-2/ 200
http://testphp.vulnweb.com/secured/highlight.html 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/network-attached-storage-dlink/ 404
http://testphp.vulnweb.com/server-status&quot 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/network-attached-storage-dlink/1/ 200
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/color-printer/3/ 200
http://testphp.vulnweb.com/hj/ 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/ 404
http://testphp.vulnweb.com/hj/var/www/product.php 404
http://testphp.vulnweb.com/server-status&lt 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/web-camera-a4tech/2/ 200
http://testphp.vulnweb.com/server-status 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/BuyProduct-1/ 200
http://testphp.vulnweb.com/hj/var/ 404
http://testphp.vulnweb.com/hj/var/www/cart.php 404
http://testphp.vulnweb.com/privacy.php 404
http://testphp.vulnweb.com/hj/var/www/listproducts.php 404
http://testphp.vulnweb.com/hj/var/www/ 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/color-printer/ 404
http://testphp.vulnweb.com/Mod_Rewrite_Shop/Details/web-camera-a4tech/ 404

8. File Extensions3 TOTAL

Extension URL
html http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
css http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/AJAX/styles.css
php http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/artists.php

9. Web Pages With Inputs15 TOTAL

URL Inputs
http://testphp.vulnweb.com/ Text[1]
http://testphp.vulnweb.com/artists.php Text[1]
http://testphp.vulnweb.com/cart.php Text[1]
http://testphp.vulnweb.com/categories.php Text[1]
http://testphp.vulnweb.com/comment.php Text[1]
Hidden[1]
Textarea[1]
http://testphp.vulnweb.com/disclaimer.php Text[1]
http://testphp.vulnweb.com/guestbook.php Hidden[1]
Textarea[1]
Text[1]
http://testphp.vulnweb.com/index.php Text[1]
http://testphp.vulnweb.com/listproducts.php Text[1]
http://testphp.vulnweb.com/login.php Text[2]
Password[1]
http://testphp.vulnweb.com/product.php Text[1]
http://testphp.vulnweb.com/search.php Text[1]
http://testphp.vulnweb.com/signup.php Text[6]
Password[2]
Textarea[1]
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php Text[1]
http://testphp.vulnweb.com/userinfo.php Text[2]
Password[1]

10. MIME Types11 TOTAL

Response MIME Types
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/artists.php
http://testphp.vulnweb.com/AJAX/categories.php
http://testphp.vulnweb.com/AJAX/index.php
http://testphp.vulnweb.com/AJAX/showxml.php
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/AJAX/titles.php
http://testphp.vulnweb.com/artists.php
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/cgi-bin/
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/Flash/
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/hpp/
http://testphp.vulnweb.com/hpp/params.php
http://testphp.vulnweb.com/images/
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/buy.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/details.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/images/
http://testphp.vulnweb.com/Mod_Rewrite_Shop/rate.php
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-1.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-2.html
http://testphp.vulnweb.com/Mod_Rewrite_Shop/RateProduct-3.html
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/secured/
http://testphp.vulnweb.com/secured/newuser.php
http://testphp.vulnweb.com/secured/style.css
http://testphp.vulnweb.com/sendcommand.php
http://testphp.vulnweb.com/showimage.php
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/Templates/
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/userinfo.php

11. External Scripts22 TOTAL

Item
//jp2pjvbwogrfbx75igaknx82orwho4yyapat5uhuvim.r87.me
//jp2pjvbwogz7exmag_zannd0lf27g4hs6budoisj30o.r87.me
//jp2pjvbwogss2oopv8v65aoqfrkxueqcv7f5kpnjqvw.r87.me
//jp2pjvbwogufrz03rvibynaqd_59z335xswz4dbpovg.r87.me
//jp2pjvbwogs04iypptujut3sswxu0gttxqlmpbutkdw.r87.me
//jp2pjvbwogbjsmpitzuxssbhmkohee91l1qf4ontijy.r87.me
//jp2pjvbwogmp5wmwnakktsg_rdes4ko0b_6f46g66uw.r87.me
//jp2pjvbwogbhd3uix6qf4_a35ycn_f1ljggnqfo5tak.r87.me
//jp2pjvbwogex6aintw8cmp30hc4rphrckhp_23nfzca.r87.me
//jp2pjvbwog8y_yhb7aosyprs_xpsza6y-u9zsqfhzuc.r87.me
//jp2pjvbwog9xgidzq94xjcovf6ceg2tj4anwr-d07i4.r87.me
//jp2pjvbwogkbezthbdvvt1r01zalcg3ykxeq4th4k8q.r87.me
//jp2pjvbwogr9fd_lpvmimgvkmjyz35iyqdmw5w9ehqy.r87.me
//jp2pjvbwog5i9fjmvcasq7cz7lcgxcbdezz7hissczo.r87.me
//jp2pjvbwogfmre4v5qlwum3ahbb97dudlndbgv5y6rq.r87.me
//jp2pjvbwogkx9plctrj3rzlehpdvofbczirhlsdmtnu.r87.me
//jp2pjvbwogpjxfxulik4t1jtvswmp2zlgsh8qh3ynmc.r87.me
//jp2pjvbwogmecrnfmmkmnvdgbsm7wf6davj5tohlptk.r87.me
//jp2pjvbwogcaojiamr6p2bgthaqkg2cri-a9h7vwdkw.r87.me
//jp2pjvbwogsdoyowpojjrmpqr_ukqufxw48cvkcbt8a' at line 1Warning: mysql_fetch_array() expects parameter 1 to be resource, boolean given in /hj/var/www/listproducts.php on line 74</div><!-- InstanceEndEditable --><!--end content --><div id=
//jp2pjvbwog9a27no5bpxuja665ouemod5esojj3kdrc' at line 1Warning: mysql_fetch_array() expects parameter 1 to be resource, boolean given in /hj/var/www/listproducts.php on line 74</div><!-- InstanceEndEditable --><!--end content --><div id=
//jp2pjvbwog6hpurn7cv-cwlnkl5itibunsnuikzwcyo.r87.me

12. Email Addresses4 TOTAL

Email URL
root@dessler.cse.buffalo.edu http://testphp.vulnweb.com/secured/
wvs@acunetix.com http://testphp.vulnweb.com/listproducts.php?artist=3
http://testphp.vulnweb.com/artists.php?artist=1
http://testphp.vulnweb.com/cart.php?del=2
http://testphp.vulnweb.com/product.php?pic=7
http://testphp.vulnweb.com/login.php
http://testphp.vulnweb.com/artists.php?artist=2
http://testphp.vulnweb.com/product.php?pic=5
http://testphp.vulnweb.com/cart.php
http://testphp.vulnweb.com/listproducts.php?artist=2
http://testphp.vulnweb.com/categories.php
http://testphp.vulnweb.com/comment.php
http://testphp.vulnweb.com/product.php?pic=2
http://testphp.vulnweb.com/listproducts.php
http://testphp.vulnweb.com/listproducts.php?cat=1
http://testphp.vulnweb.com/product.php?pic=4
http://testphp.vulnweb.com/index.php
http://testphp.vulnweb.com/product.php?pic=3
http://testphp.vulnweb.com/cart.php?del=1
http://testphp.vulnweb.com/logout.php
http://testphp.vulnweb.com/artists.php?artist=3
http://testphp.vulnweb.com/product.php?pic=6
http://testphp.vulnweb.com/
http://testphp.vulnweb.com/listproducts.php?cat=4
http://testphp.vulnweb.com/listproducts.php?cat=3
http://testphp.vulnweb.com/search.php?test=query
http://testphp.vulnweb.com/signup.php
http://testphp.vulnweb.com/guestbook.php
http://testphp.vulnweb.com/listproducts.php?cat=2
http://testphp.vulnweb.com/disclaimer.php
http://testphp.vulnweb.com/listproducts.php?artist=1
http://testphp.vulnweb.com/search.php
http://testphp.vulnweb.com/userinfo.php
http://testphp.vulnweb.com/Templates/main_dynamic_template.dwt.php
http://testphp.vulnweb.com/product.php
http://testphp.vulnweb.com/product.php?pic=1
http://testphp.vulnweb.com/artists.php
tes@tes.br http://testphp.vulnweb.com/userinfo.php
license@php.net http://testphp.vulnweb.com/secured/

13. Cookies2 TOTAL

Name Domain Path Expires / Max-Age Http Only Secure Same Site URL
mycookie testphp.vulnweb.com /AJAX Session only None http://testphp.vulnweb.com/AJAX/
http://testphp.vulnweb.com/AJAX/index.php
login testphp.vulnweb.com / Session only None http://testphp.vulnweb.com/userinfo.php

14. Comments38 TOTAL

Comments containing sensitive keywords are highlighted in yellow.
Comment URL
/* hack to fix IE/Win's broken rendering of block-level anchors in lists */
/* fix for browsers that don't need the hackfix for browsers that don't need the hack */
//-->
<!-- InstanceBegin template="/Templates/main_dynamic_template.dwt.php" codeOutsideHTMLIsLocked="false" -->
/************* #search styles ***************/
/************** #headlines styles **************/
/* Layout Divs */
<!-- TemplateBeginEditable name="content_rgn" -->
<!-- here goes headers headers -->
<!-- InstanceBeginEditable name="document_title_rgn" -->
<!--end content -->
/************** .story styles *****************/
<!-- InstanceBeginEditable name="headers_rgn" -->
/*********** .relatedLinks styles ***********/
/*********** #sectionLinks styles ***********/
/*Component Divs */
<!-- InstanceEnd -->
// free the curent one
<!-- begin content -->
<!-- TemplateBeginEditable name="headers_rgn" -->
/*************** #pageName styles **************/
/************** .feature styles ***************/
/************* #siteInfo styles ***************/
<!-- InstanceEndEditable -->
/* negative top margin pulls siteinfo up so its top border overlaps (and thus lines up with) the bottom border of the navBar in cases where they "touch" */
/* adjust margins to change separation between the feature image and text flowing around it */
/************** #advert styles **************/
/************* #globalNav styles **************/
<!-- TemplateEndEditable -->
<!-- InstanceBeginEditable name="content_rgn" -->
/* 'nowrap' prevents links from line-wrapping if there are too many to fit in one line this will force a horizontal scrollbar if there isn't enough room for all links remove rule or change value to 'normal' if you want the links to line-wrap */
//reloads the window if Nav4 resized
/************* #breadCrumb styles *************/
/***********************************************/
<!--end navbar -->
<!-- end masthead -->
<!-- TemplateBeginEditable name="document_title_rgn" -->
/*********** #navBar link styles ***********/

15. External Frames21 TOTAL

Item URL
http://jp2pjvbwogpw13otdd4qawnlzvdv__pdeimw4mmpqw8.r87.me/ http://testphp.vulnweb.com/hpp/params.php?aaaa%2f=&p=valid&pp=12
http://jp2pjvbwogozgep8dtnyrf00tvuu4qg9bu_lj8pkqbi.r87.me/ http://testphp.vulnweb.com/guestbook.php
http://jp2pjvbwogxm2mcxn8yselr-4muvos0dnydyfhv9dga.r87.me/ http://testphp.vulnweb.com/guestbook.php
http://jp2pjvbwogkp9fcgxpqsggqd1sj5ucqlmy8bm999mvq.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwogbcqcgpq9frgdoe5fderj58oovgqw6psgw.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwogtukhg1nt-hfrwvwxkqfrmsjwnddnbwgqi.r87.me/ http://testphp.vulnweb.com/listproducts.php?cat=1
http://jp2pjvbwogpb9sx20mmizvhrhx843jphky1qsqeekee.r87.me/ http://testphp.vulnweb.com/hpp/params.php?aaaa%2f=&p=valid&pp=12
http://jp2pjvbwogv4iw4zf2mdxnleiolhtwi9z2h3mx5hk74.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwoggzco_lym_7ilgou6vfjclocfcf0dk0g_k.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwogqvimrtopdqlh9587hcx7jhcatfjjjkhf4.r87.me/ http://testphp.vulnweb.com/guestbook.php
http://jp2pjvbwogmwsjhfgate2zv2ovgc03rcgwyt1akmmm0.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwogcunwy9vacy9fwwd5gc-ehhyr2_lctigcy.r87.me/ http://testphp.vulnweb.com/guestbook.php
http://jp2pjvbwogpebhefgqyy5moyp0q6gmmiz896oop_vwk.r87.me/ http://testphp.vulnweb.com/hpp/params.php?aaaa%2f=&p=valid&pp=12
http://jp2pjvbwogoxr83umnkvllct1gg8cooyyygdcqgs9po.r87.me/ http://testphp.vulnweb.com/comment.php
http://jp2pjvbwognw4gy6zwwg2xef39ll71breim_rz7vd8g.r87.me/ http://testphp.vulnweb.com/comment.php
http://jp2pjvbwogt0dhkh2cltncosn4_ngyldiz8njv45eai.r87.me/ http://testphp.vulnweb.com/search.php?test=query
http://jp2pjvbwogwr_vgo1gxcuktu5ibeg7gyuf-etszpkq8.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwogee_g-uxz0elkm0yzosq9wagz7jnufq558.r87.me/ http://testphp.vulnweb.com/secured/newuser.php
http://jp2pjvbwogv7uvx9wcrkpbtq9mnnm_zhle-r9woaajo.r87.me/ http://testphp.vulnweb.com/hpp/params.php?aaaa%2f=&p=valid&pp=12
http://jp2pjvbwog9-iu9uacphkeemiuf7gfb5dc3iywvrtme.r87.me/ http://testphp.vulnweb.com/listproducts.php?artist=1
http://jp2pjvbwoghatp_e_ifmclihooycm8dxmw11p6jms8u.r87.me/ http://testphp.vulnweb.com/search.php?test=query

16. CSS Files3 TOTAL

URL
http://testphp.vulnweb.com/style.css
http://testphp.vulnweb.com/AJAX/styles.css
http://testphp.vulnweb.com/secured/style.css

17. Slowest Pages10 TOTAL

URL HTTP Status Code HTTP Status Description Response Length (bytes) Response Time (ms)
http://testphp.vulnweb.com/AJAX/artists.php 200 OK 333 231
http://testphp.vulnweb.com/artists.php?artist=3 200 OK 6381 233
http://testphp.vulnweb.com/style.css 200 OK 5710 274
http://testphp.vulnweb.com/showimage.php?file=3 200 OK 486 235
http://testphp.vulnweb.com/secured/style.css 200 OK 5710 284
http://testphp.vulnweb.com/AJAX/showxml.php 200 OK 199 221
http://testphp.vulnweb.com/listproducts.php?cat=2 200 OK 5499 225
http://testphp.vulnweb.com/comment.php?aid=2 200 OK 1440 225
http://testphp.vulnweb.com/product.php?pic=5 200 OK 6570 231
http://testphp.vulnweb.com/privacy.php 404 Not Found 211 222