Security Error 011

[ Go Back ]

Total impact: 46
Affected tags: xss, csrf, id, rfe, lfi

Variable: COOKIE.handl_landing_page | Value: https://ijaazah.com/lifecycle/flows/signup?access_type=offline&app_domain=https://ijaazah.com&client_id=413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com&continue=https://accounts.google.com/signin/oauth/legacy/consent?authuser%3Dunknown%26part%3DAJi8hAP2AEy9IJ0zBr2XinPGBZsD7b1Ijcon4iRvFffTu4NEbSKkjsxKBhKcogz9MS0dNZQtWoJMxUpGvhOgln8mZH-7Zrjwvhp-oWE-fnx6wcTAjLgHDjO8VbUi065y0RvoKReE5j31-ovYcLBKKUu6Gzl9IMCkhcata1r7-uP27ZB7VEDdqe9GFDNgWIWBCZALPVjKk1naFCH_TwdXBrSq9IJ_4epl01HFKdVBIsGZyL2rJoFfnTdO0xRaNBDMZMnd9Cybz1TA4XaVTmRw_zNci0ODQGlSZvPmUAXAn5Zl4Fq-jfNbngGhvTQCt0r0CYLMknXawntHE8WYBmIHuFTk-lYq4QFVzhFT5MoT6rFSc4sTjE1hOhuWiy5tMisDJxCJgDFwcBqdLxnkkmYt9oQZO6UE_IT_av2wlXv4lNGEnl71lj2_LJn4lSrsp5AWIa9zZF-rtXZQ0JS8JXuoww5qIc4BbrbG1Q%26flowName%3DGeneralOAuthFlow%26as%3DS-989342699%253A1714426786943896%26client_id%3D413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com%23&ddm=0&dsh=S-989342699:1714426786943896&flowEntry=SignUp&flowName=GlifWebSignIn&o2v=2&opparams=%253F&prompt=select_account&rart=ANgoxccFehyOm0R0uNcCSsE0bSSih4kQPgTOF6ovQ4CtNcWnbuuYhJU9xFiqEGeDzjpH_Mg7aPr6Lgfb3UOYPiNJEqxzqeF8OVEynSb9xzXneNRQV7T5PL0&redirect_uri=https://ijaazah.com/wp-login.php?loginSocial%3Dgoogle&response_type=code&scope=email+profile&service=lso&signInUrl=https://accounts.google.com/signin/oauth?access_type%3Doffline%26app_domain%3Dhttps://ijaazah.com%26client_id%3D413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com%26continue%3Dhttps://accounts.google.com/signin/oauth/legacy/consent?authuser%253Dunknown%2526part%253DAJi8hAP2AEy9IJ0zBr2XinPGBZsD7b1Ijcon4iRvFffTu4NEbSKkjsxKBhKcogz9MS0dNZQtWoJMxUpGvhOgln8mZH-7Zrjwvhp-oWE-fnx6wcTAjLgHDjO8VbUi065y0RvoKReE5j31-ovYcLBKKUu6Gzl9IMCkhcata1r7-uP27ZB7VEDdqe9GFDNgWIWBCZALPVjKk1naFCH_TwdXBrSq9IJ_4epl01HFKdVBIsGZyL2rJoFfnTdO0xRaNBDMZMnd9Cybz1TA4XaVTmRw_zNci0ODQGlSZvPmUAXAn5Zl4Fq-jfNbngGhvTQCt0r0CYLMknXawntHE8WYBmIHuFTk-lYq4QFVzhFT5MoT6rFSc4sTjE1hOhuWiy5tMisDJxCJgDFwcBqdLxnkkmYt9oQZO6UE_IT_av2wlXv4lNGEnl71lj2_LJn4lSrsp5AWIa9zZF-rtXZQ0JS8JXuoww5qIc4BbrbG1Q%2526flowName%253DGeneralOAuthFlow%2526as%253DS-989342699%25253A1714426786943896%2526client_id%253D413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com%2523%26ddm%3D0%26dsh%3DS-989342699:1714426786943896%26flowName%3DGeneralOAuthLite%26o2v%3D2%26opparams%3D%25253F%26prompt%3Dselect_account%26rart%3DANgoxccFehyOm0R0uNcCSsE0bSSih4kQPgTOF6ovQ4CtNcWnbuuYhJU9xFiqEGeDzjpH_Mg7aPr6Lgfb3UOYPiNJEqxzqeF8OVEynSb9xzXneNRQV7T5PL0%26redirect_uri%3Dhttps://ijaazah.com/wp-login.php?loginSocial%253Dgoogle%26response_type%3Dcode%26scope%3Demail%2Bprofile%26service%3Dlso%26state%3D17ec672e39699d14f6a6edd182e6a332&state=17ec672e39699d14f6a6edd182e6a332
Impact: 23 | Tags: xss, csrf, id, rfe, lfi
Description: Detects JavaScript with(), ternary operators and XML predicate attacks | Tags: xss, csrf | ID: 7
Description: Detects possible includes and typical script methods | Tags: xss, csrf, id, rfe | ID: 16
Description: Detects very basic XSS probings | Tags: xss, csrf, id, rfe | ID: 21
Description: Detects JavaScript location/document property access and window access obfuscation | Tags: xss, csrf | ID: 23
Description: Detects url injections and RFE attempts | Tags: id, rfe, lfi | ID: 61

Variable: COOKIE.handl_url | Value: https://ijaazah.com/lifecycle/flows/signup?access_type=offline&app_domain=https://ijaazah.com&client_id=413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com&continue=https://accounts.google.com/signin/oauth/legacy/consent?authuser%3Dunknown%26part%3DAJi8hAP2AEy9IJ0zBr2XinPGBZsD7b1Ijcon4iRvFffTu4NEbSKkjsxKBhKcogz9MS0dNZQtWoJMxUpGvhOgln8mZH-7Zrjwvhp-oWE-fnx6wcTAjLgHDjO8VbUi065y0RvoKReE5j31-ovYcLBKKUu6Gzl9IMCkhcata1r7-uP27ZB7VEDdqe9GFDNgWIWBCZALPVjKk1naFCH_TwdXBrSq9IJ_4epl01HFKdVBIsGZyL2rJoFfnTdO0xRaNBDMZMnd9Cybz1TA4XaVTmRw_zNci0ODQGlSZvPmUAXAn5Zl4Fq-jfNbngGhvTQCt0r0CYLMknXawntHE8WYBmIHuFTk-lYq4QFVzhFT5MoT6rFSc4sTjE1hOhuWiy5tMisDJxCJgDFwcBqdLxnkkmYt9oQZO6UE_IT_av2wlXv4lNGEnl71lj2_LJn4lSrsp5AWIa9zZF-rtXZQ0JS8JXuoww5qIc4BbrbG1Q%26flowName%3DGeneralOAuthFlow%26as%3DS-989342699%253A1714426786943896%26client_id%3D413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com%23&ddm=0&dsh=S-989342699:1714426786943896&flowEntry=SignUp&flowName=GlifWebSignIn&o2v=2&opparams=%253F&prompt=select_account&rart=ANgoxccFehyOm0R0uNcCSsE0bSSih4kQPgTOF6ovQ4CtNcWnbuuYhJU9xFiqEGeDzjpH_Mg7aPr6Lgfb3UOYPiNJEqxzqeF8OVEynSb9xzXneNRQV7T5PL0&redirect_uri=https://ijaazah.com/wp-login.php?loginSocial%3Dgoogle&response_type=code&scope=email+profile&service=lso&signInUrl=https://accounts.google.com/signin/oauth?access_type%3Doffline%26app_domain%3Dhttps://ijaazah.com%26client_id%3D413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com%26continue%3Dhttps://accounts.google.com/signin/oauth/legacy/consent?authuser%253Dunknown%2526part%253DAJi8hAP2AEy9IJ0zBr2XinPGBZsD7b1Ijcon4iRvFffTu4NEbSKkjsxKBhKcogz9MS0dNZQtWoJMxUpGvhOgln8mZH-7Zrjwvhp-oWE-fnx6wcTAjLgHDjO8VbUi065y0RvoKReE5j31-ovYcLBKKUu6Gzl9IMCkhcata1r7-uP27ZB7VEDdqe9GFDNgWIWBCZALPVjKk1naFCH_TwdXBrSq9IJ_4epl01HFKdVBIsGZyL2rJoFfnTdO0xRaNBDMZMnd9Cybz1TA4XaVTmRw_zNci0ODQGlSZvPmUAXAn5Zl4Fq-jfNbngGhvTQCt0r0CYLMknXawntHE8WYBmIHuFTk-lYq4QFVzhFT5MoT6rFSc4sTjE1hOhuWiy5tMisDJxCJgDFwcBqdLxnkkmYt9oQZO6UE_IT_av2wlXv4lNGEnl71lj2_LJn4lSrsp5AWIa9zZF-rtXZQ0JS8JXuoww5qIc4BbrbG1Q%2526flowName%253DGeneralOAuthFlow%2526as%253DS-989342699%25253A1714426786943896%2526client_id%253D413537724008-jifppvvakspa50thkpi47ru8vn7ktapi.apps.googleusercontent.com%2523%26ddm%3D0%26dsh%3DS-989342699:1714426786943896%26flowName%3DGeneralOAuthLite%26o2v%3D2%26opparams%3D%25253F%26prompt%3Dselect_account%26rart%3DANgoxccFehyOm0R0uNcCSsE0bSSih4kQPgTOF6ovQ4CtNcWnbuuYhJU9xFiqEGeDzjpH_Mg7aPr6Lgfb3UOYPiNJEqxzqeF8OVEynSb9xzXneNRQV7T5PL0%26redirect_uri%3Dhttps://ijaazah.com/wp-login.php?loginSocial%253Dgoogle%26response_type%3Dcode%26scope%3Demail%2Bprofile%26service%3Dlso%26state%3D17ec672e39699d14f6a6edd182e6a332&state=17ec672e39699d14f6a6edd182e6a332
Impact: 23 | Tags: xss, csrf, id, rfe, lfi
Description: Detects JavaScript with(), ternary operators and XML predicate attacks | Tags: xss, csrf | ID: 7
Description: Detects possible includes and typical script methods | Tags: xss, csrf, id, rfe | ID: 16
Description: Detects very basic XSS probings | Tags: xss, csrf, id, rfe | ID: 21
Description: Detects JavaScript location/document property access and window access obfuscation | Tags: xss, csrf | ID: 23
Description: Detects url injections and RFE attempts | Tags: id, rfe, lfi | ID: 61