copyright of bangladesh scan result

Upload: antiblack49

Post on 05-Apr-2018

215 views

Category:

Documents


0 download

TRANSCRIPT

  • 7/31/2019 Copyright of Bangladesh Scan Result

    1/65

    The Copyright OfBangladesh Website Detail

    Scan Result

    12 June, 2012

    Detailed Scan Report

    Generated by Acunetix WVS Reporter (v7.0 Build 20110406)

  • 7/31/2019 Copyright of Bangladesh Scan Result

    2/65

    Scan of http://copyrightoffice.gov.bd:80/

    Scan information

    Scan details

    Starttime 6/12/2012 3:25:10 PM

    Finish time 6/12/2012 3:36:26 PM

    Scan time 11 minutes, 16 secondsProfile Default

    Server information

    Responsive True

    Server banner Apache

    Server OS Unknown

    Server technologies

    Threat level

    Alerts distribution

    High

    Medium

    LowInformational 23

    14

    7

    8

    52Total alerts found

    Knowledge base

    List of open TCP ports

    2Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    3/65

    3Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    4/65

    4Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    5/65

    5Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    6/65

    6Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    7/65

    7Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    8/65

    8Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    9/65

    9Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    10/65

    10Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    11/65

    11Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    12/65

    12Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    13/65

  • 7/31/2019 Copyright of Bangladesh Scan Result

    14/65

    14Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    15/65

    15Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    16/65

    16Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    17/65

    17Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    18/65

    18Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    19/65

    19Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    20/65

    20Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    21/65

    21Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    22/65

    22Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    23/65

    23Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    24/65

    24Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    25/65

    25Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    26/65

    26Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    27/65

    27Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    28/65

    28Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    29/65

    29Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    30/65

    30Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    31/65

    DNS server running

    FTP server running

    DNS server running on TCP

    Whois lookup

    31Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    32/65

    IMAP server running

    MySQL server running

    POP3 server running

    SMTP server running

    SMTP server running

    32Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    33/65

    Alerts summary

    Blind SQL Injection

    Affects Variations

    1/index.php

    File inclusion

    Affects Variations

    6/index.php

    SQL injection

    Affects Variations

    1/index.php

    Application error message

    Affects Variations

    3/index.php

    Backup files

    Affects Variations

    1/index1.php

    Error message on page

    Affects Variations

    1/images/index.php

    SMTP open mail relay

    Affects Variations

    2Server

    Directory Listing

    Affects Variations

    1/admin/css

    1/admin/css/New%20Folder

    1/admin/css/uxa

    1/admin/images

    1/admin/pic

    1/css

    1/images/banner

    33Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    34/65

    Possible sensitive directories

    Affects Variations

    1/~admin

    1/admin

    1/cgi-sys

    1/config

    1/mailman

    Session Cookie without HttpOnly flag set

    Affects Variations

    1/

    Session Cookie without Secure flag set

    Affects Variations

    1/

    Broken links

    Affects Variations

    1/admin/pic/404.php

    1/admin/pic/fix.php

    1/admin/styles.css

    1/admin/userhomepage/request.php

    1/function.include

    1/function.include-once

    1/images/function.include

    1/images/function.require

    1/images/function.require-once

    1/inex.php

    1/inex.php (78372301ace0fb1ebef3409b3714b14a)

    Email address found

    Affects Variations

    1/admin/index.php

    GHDB: Apache directory listing which show Apache version

    Affects Variations

    1/admin/css

    1/admin/css/New%20Folder

    1/admin/css/uxa

    1/admin/images

    1/admin/pic1/css

    1/images/banner

    Password type input with autocomplete enabled

    Affects Variations

    1/admin

    1/admin/index.php

    Possible server path disclosure (Unix)

    Affects Variations

    1/images/index.php

    34Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    35/65

    Possible username or password disclosure

    Affects Variations

    1/admin/index.php

    35Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    36/65

    Alert details

    Blind SQL Injection

    HighSeverity

    ValidationType

    Scripting (Blind_Sql_Injection.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /index.php

    GET /index.php?action=noticeboard&id=%24%7binjecthere%7d HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-aliveAccept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:56:44 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Content-Length: 13923

    Response

    File inclusion

    36Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    37/65

    HighSeverity

    ValidationType

    Scripting (File_Inclusion.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /index.php

    POST /index.php?action=1some_inexistent_file_with_long_name HTTP/1.1Content-Length: 662

    Content-Type: multipart/form-data; boundary=-----AcunetixBoundary_RNOYBCPIMA

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    -------AcunetixBoundary_RNOYBCPIMA

    Content-Disposition: form-data; name="comments"

    -------AcunetixBoundary_RNOYBCPIMAContent-Disposition: form-data; name="companyname"

    -------AcunetixBoundary_RNOYBCPIMA

    Content-Disposition: form-data; name="country"

    USA

    -------AcunetixBoundary_RNOYBCPIMA

    Content-Disposition: form-data; name="email"

    -------AcunetixBoundary_RNOYBCPIMA

    Content-Disposition: form-data; name="name"

    -------AcunetixBoundary_RNOYBCPIMA

    Content-Disposition: form-data; name="phone"

    Request

    37Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    38/65

    -------AcunetixBoundary_RNOYBCPIMA

    Content-Disposition: form-data; name="Submit"

    Submit

    HTTP/1.1 200 OK

    Via: 1.1 ROOTConnection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:56:59 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Content-Length: 12075

    Response

    Details

    /index.php

    POST /index.php?action=1some_inexistent_file_with_long_name HTTP/1.1

    Content-Length: 665

    Content-Type: multipart/form-data; boundary=-----AcunetixBoundary_SSUVPHEINR

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    -------AcunetixBoundary_SSUVPHEINR

    Content-Disposition: form-data; name="comments"

    -------AcunetixBoundary_SSUVPHEINR

    Content-Disposition: form-data; name="companyname"

    -------AcunetixBoundary_SSUVPHEINR

    Content-Disposition: form-data; name="country"

    Canada-------AcunetixBoundary_SSUVPHEINR

    Content-Disposition: form-data; name="email"

    -------AcunetixBoundary_SSUVPHEINR

    Content-Disposition: form-data; name="name"

    -------AcunetixBoundary_SSUVPHEINR

    Content-Disposition: form-data; name="phone"

    -------AcunetixBoundary_SSUVPHEINRContent-Disposition: form-data; name="Submit"

    Submit

    -------AcunetixBoundary_SSUVPHEINR--

    Request

    38Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    39/65

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:57:01 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=72

    Content-Length: 12075

    Response

    Details

    /index.php

    POST /index.php?action=1some_inexistent_file_with_long_name HTTP/1.1

    Content-Length: 673Content-Type: multipart/form-data; boundary=-----AcunetixBoundary_QLYOCQLOCA

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="comments"

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="companyname"

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="country"

    United Kingdom

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="email"

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="name"

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="phone"

    -------AcunetixBoundary_QLYOCQLOCA

    Content-Disposition: form-data; name="Submit"

    Submit

    -------AcunetixBoundary_QLYOCQLOCA--

    Request

    HTTP/1.1 200 OKVia: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:57:02 GMT

    Response

    39Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    40/65

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=70

    Details

    /index.php

    GET /index.php?action=1some_inexistent_file_with_long_name&id=21 HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OKVia: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:57 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=72

    Content-Length: 12075

    Response

    Details

    /index.php

    GET /index.php?action=1some_inexistent_file_with_long_name&id=22 HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:56 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Content-Length: 12075

    Response

    40Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    41/65

    Details

    /index.php

    GET /index.php?action=1some_inexistent_file_with_long_name HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:42 GMTContent-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=71

    Content-Length: 12075

    Response

    SQL injection

    HighSeverity

    ValidationType

    Scripting (Sql_Injection.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    41Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    42/65

    Details

    /index.php

    GET /index.php?action=noticeboard&id=%24%7binjecthere%7d HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0cHost: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:56:20 GMT

    Content-Type: text/html

    Server: ApacheKeep-Alive: timeout=5, max=46

    Content-Length: 9967

    Response

    Application error message

    MediumSeverity

    ValidationType

    Scripting (Error_Message.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /index.php

    GET /index.php?action=&id=22 HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    Response

    42Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    43/65

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:56 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=56

    Content-Length: 12003

    Details/index.php

    GET /index.php?action= HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-aliveAccept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:42 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=72

    Content-Length: 12003

    Response

    Details

    /index.php

    GET /index.php?action=&id=21 HTTP/1.1

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:56:00 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=54Content-Length: 12003

    Response

    Backup files

    43Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    44/65

    MediumSeverity

    ValidationType

    Scripting (Backup_File.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /index1.php

    GET /index1.php HTTP/1.1

    Range: bytes=0-99999

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOTConnection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:56:07 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=50

    Content-Length: 16528

    Response

    Error message on page

    MediumSeverity

    ValidationType

    Scripting (Text_Search.script)Reported by module

    Impact

    Description

    Recommendation

    44Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    45/65

    Affected items

    Details

    /images/index.php

    GET /images/index.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOTConnection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:18 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=73

    Content-Length: 1228

    Response

    SMTP open mail relay

    MediumSeverity

    ConfigurationType

    Scripting (smtp_open_relay.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    Server

    Details

    Server

    Directory Listing

    45Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    46/65

    Low

    Severity Information

    Type Scripting (Directory_Listing.script)

    Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /admin/css

    GET /admin/css/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/css/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0cHost: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 705

    Date: Tue, 12 Jun 2012 08:55:29 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: ApacheKeep-Alive: timeout=5, max=75

    Response

    Details

    /admin/css/New%20Folder

    GET /admin/css/New%20Folder/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabledAcunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/css/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Request

    46Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    47/65

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 373

    Date: Tue, 12 Jun 2012 08:55:30 GMTContent-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=66

    Response

    Details

    /admin/css/uxa

    GET /admin/css/uxa/ HTTP/1.1Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/css/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOTConnection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 373

    Date: Tue, 12 Jun 2012 08:55:30 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Response

    Details

    /admin/images

    GET /admin/images/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/images/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Response

    47Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    48/65

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 5577

    Date: Tue, 12 Jun 2012 08:55:31 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Details

    /admin/pic

    GET /admin/pic/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/pic/

    Host: copyrightoffice.gov.bd

    Connection: Keep-aliveUser-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 4469

    Date: Tue, 12 Jun 2012 08:55:20 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=71

    Response

    Details

    /css

    GET /css/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalertsReferer: http://copyrightoffice.gov.bd/css/

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 411

    Date: Tue, 12 Jun 2012 08:55:18 GMT

    Content-Type: text/html;charset=ISO-8859-1Server: Apache

    Keep-Alive: timeout=5, max=74

    Response

    48Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    49/65

    Details

    /images/banner

    GET /images/banner/ HTTP/1.1

    Pragma: no-cacheAcunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/images/banner/

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-AliveContent-Length: 514

    Date: Tue, 12 Jun 2012 08:55:18 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=73

    Response

    Possible sensitive directories

    LowSeverity

    ValidationType

    Scripting (Possible_Sensitive_Directories.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /~admin

    GET /~admin HTTP/1.1

    Accept: acunetix/wvs

    Range: bytes=0-99999

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    Response

    49Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    50/65

    HTTP/1.1 301 Moved Permanently

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 317

    Date: Tue, 12 Jun 2012 08:56:03 GMT

    Location: http://copyrightoffice.gov.bd/~admin/

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=8

    Details

    /admin

    GET /admin HTTP/1.1

    Accept: acunetix/wvs

    Range: bytes=0-99999

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 301 Moved Permanently

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 316

    Date: Tue, 12 Jun 2012 08:56:00 GMT

    Location: http://copyrightoffice.gov.bd/admin/

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Response

    Details/cgi-sys

    GET /cgi-sys HTTP/1.1

    Accept: acunetix/wvs

    Range: bytes=0-99999

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 301 Moved Permanently

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 318

    Date: Tue, 12 Jun 2012 08:55:43 GMT

    Location: http://copyrightoffice.gov.bd/cgi-sys/

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=57

    X-Pad: avoid browser bug

    Response

    Details

    /config

    50Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    51/65

    GET /config HTTP/1.1

    Accept: acunetix/wvs

    Range: bytes=0-99999

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 301 Moved Permanently

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 317

    Date: Tue, 12 Jun 2012 08:56:20 GMT

    Location: http://copyrightoffice.gov.bd/config/

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=15

    X-Pad: avoid browser bug

    Response

    Details

    /mailman

    GET /mailman HTTP/1.1

    Accept: acunetix/wvs

    Range: bytes=0-99999

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd:80

    Connection: Keep-alive

    Accept-Encoding: gzip,deflate

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 301 Moved Permanently

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 318

    Date: Tue, 12 Jun 2012 08:55:53 GMT

    Location: http://copyrightoffice.gov.bd/mailman/

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=24

    X-Pad: avoid browser bug

    Response

    Session Cookie without HttpOnly flag set

    LowSeverity

    InformationalType

    CrawlerReported by module

    Impact

    Description

    51Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    52/65

    Recommendation

    Affected items

    Details

    /

    GET / HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OKVia: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:06 GMT

    Content-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=75

    Content-Length: 18672

    Response

    Session Cookie without Secure flag set

    LowSeverity

    InformationalType

    CrawlerReported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /

    GET / HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Request

    52Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    53/65

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:06 GMTContent-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=75

    Content-Length: 18672

    Response

    Broken links

    InformationalSeverity

    InformationalType

    CrawlerReported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /admin/pic/404.php

    GET /admin/pic/404.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/index.php

    Host: copyrightoffice.gov.bdConnection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 406

    Date: Tue, 12 Jun 2012 08:55:17 GMT

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=75

    Response

    Details

    /admin/pic/fix.php

    53Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    54/65

    GET /admin/pic/fix.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/index.php

    Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026

    Host: copyrightoffice.gov.bd

    Connection: Keep-aliveUser-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 406

    Date: Tue, 12 Jun 2012 08:55:21 GMT

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=70

    Response

    Details

    /admin/styles.css

    GET /admin/styles.css HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/index.php

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bdConnection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 405

    Date: Tue, 12 Jun 2012 08:55:21 GMT

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=67

    Response

    Details

    /admin/userhomepage/request.php

    GET /admin/userhomepage/request.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/index.php

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0cHost: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    Response

    54Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    55/65

  • 7/31/2019 Copyright of Bangladesh Scan Result

    56/65

    Details

    /images/function.include

    GET /images/function.include HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalertsReferer: http://copyrightoffice.gov.bd/images/index.php

    Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 412

    Date: Tue, 12 Jun 2012 08:55:21 GMTContent-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=68

    Response

    Details

    /images/function.require

    GET /images/function.require HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/images/index.php

    Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 412Date: Tue, 12 Jun 2012 08:55:21 GMT

    Content-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=69

    Response

    Details

    /images/function.require-once

    GET /images/function.require-once HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabledAcunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/images/index.php

    Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026

    Request

    56Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    57/65

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 417

    Date: Tue, 12 Jun 2012 08:55:21 GMTContent-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=71

    Response

    Details

    /inex.php

    GET /inex.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/index.php

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 397

    Date: Tue, 12 Jun 2012 08:55:17 GMTContent-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=64

    Response

    Details

    /inex.php (78372301ace0fb1ebef3409b3714b14a)

    GET /inex.php?action=act4 HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/index.php

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 404 Not Found

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 397

    Date: Tue, 12 Jun 2012 08:55:17 GMTContent-Type: text/html; charset=iso-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Response

    57Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    58/65

    Email address found

    InformationalSeverity

    InformationalType

    Scripting (Text_Search.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /admin/index.php

    GET /admin/index.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****Acunetix-Aspect-Queries: filelist;aspectalerts

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Expires: Thu, 19 Nov 1981 08:52:00 GMT

    Date: Tue, 12 Jun 2012 08:55:20 GMT

    Content-Type: text/htmlServer: Apache

    Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0

    Pragma: no-cache

    Set-Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026; path=/

    Keep-Alive: timeout=5, max=70

    Content-Length: 9910

    Response

    GHDB: Apache directory listing which show Apache version

    InformationalSeverity

    InformationalType

    GHDBReported by module

    Description

    58Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    59/65

    Impact

    Recommendation

    Affected items

    Details

    /admin/css

    GET /admin/css/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/css/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 705

    Date: Tue, 12 Jun 2012 08:55:29 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=75

    Response

    Details

    /admin/css/New%20Folder

    GET /admin/css/New%20Folder/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/css/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bdConnection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    Response

    59Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    60/65

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 373

    Date: Tue, 12 Jun 2012 08:55:30 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=66

    Details/admin/css/uxa

    GET /admin/css/uxa/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/css/Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 373

    Date: Tue, 12 Jun 2012 08:55:30 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Response

    Details

    /admin/images

    GET /admin/images/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/images/

    Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 5577

    Date: Tue, 12 Jun 2012 08:55:31 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Response

    60Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    61/65

    Details

    /admin/pic

    GET /admin/pic/ HTTP/1.1

    Pragma: no-cacheAcunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/pic/

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-AliveContent-Length: 4469

    Date: Tue, 12 Jun 2012 08:55:20 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=71

    Response

    Details

    /css

    GET /css/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/css/

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOTConnection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 411

    Date: Tue, 12 Jun 2012 08:55:18 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=74

    Response

    Details

    /images/banner

    GET /images/banner/ HTTP/1.1

    Pragma: no-cache

    Request

    61Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    62/65

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/images/banner/

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    HTTP/1.1 200 OK

    Via: 1.1 ROOTConnection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Content-Length: 514

    Date: Tue, 12 Jun 2012 08:55:18 GMT

    Content-Type: text/html;charset=ISO-8859-1

    Server: Apache

    Keep-Alive: timeout=5, max=73

    Response

    Password type input with autocomplete enabled

    InformationalSeverity

    InformationalType

    CrawlerReported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /admin

    GET /admin/ HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Referer: http://copyrightoffice.gov.bd/admin/

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Expires: Thu, 19 Nov 1981 08:52:00 GMT

    Date: Tue, 12 Jun 2012 08:55:20 GMT

    Response

    62Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    63/65

    Content-Type: text/html

    Server: Apache

    Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0

    Pragma: no-cache

    Set-Cookie: PHPSESSID=82a56a911401903d5cc82a19cdea9c0c; path=/

    Keep-Alive: timeout=5, max=70

    Details

    /admin/index.php

    GET /admin/index.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OKVia: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Expires: Thu, 19 Nov 1981 08:52:00 GMT

    Date: Tue, 12 Jun 2012 08:55:20 GMT

    Content-Type: text/html

    Server: Apache

    Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0

    Pragma: no-cache

    Set-Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026; path=/

    Keep-Alive: timeout=5, max=70

    Content-Length: 9910

    Response

    Possible server path disclosure (Unix)

    InformationalSeverity

    InformationalType

    Scripting (Text_Search.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    63Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    64/65

    Details

    /images/index.php

    GET /images/index.php HTTP/1.1

    Pragma: no-cacheAcunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

    Request

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Date: Tue, 12 Jun 2012 08:55:18 GMTContent-Type: text/html

    Server: Apache

    Keep-Alive: timeout=5, max=73

    Content-Length: 1228

    Response

    Possible username or password disclosure

    InformationalSeverity

    InformationalType

    Scripting (Text_Search.script)Reported by module

    Impact

    Description

    Recommendation

    Affected items

    Details

    /admin/index.php

    GET /admin/index.php HTTP/1.1

    Pragma: no-cache

    Acunetix-Aspect: enabled

    Acunetix-Aspect-Password: *****

    Acunetix-Aspect-Queries: filelist;aspectalerts

    Request

    64Scanned By Security Ways , Powered By Acunetix Website Audit

  • 7/31/2019 Copyright of Bangladesh Scan Result

    65/65

    Host: copyrightoffice.gov.bd

    Connection: Keep-alive

    HTTP/1.1 200 OK

    Via: 1.1 ROOT

    Connection: Keep-Alive

    Proxy-Connection: Keep-Alive

    Expires: Thu, 19 Nov 1981 08:52:00 GMT

    Date: Tue, 12 Jun 2012 08:55:20 GMTContent-Type: text/html

    Server: Apache

    Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0

    Pragma: no-cache

    Set-Cookie: PHPSESSID=547bf09b56cb0072dedd2eb11fff5026; path=/

    Keep-Alive: timeout=5, max=70

    Content-Length: 9910

    Response