Cookie Manipulation
Cross Site Scripting-XSS
Test for sensitive information stored in URLs
Test for weak, untrusted or expired SSL
certificates http://netsecurity.about.com/od/hackertools/a/What-Hackers-Do-No
http://resources.infosecinstitute.com/use-firefox-browser-as-a-pene
http://www.webscantest.com/datastore/
ackertools/a/What-Hackers-Do-Not-Want-You-To-Know-About-The-Tamper-Data-Firefox-Add-on.htm
om/use-firefox-browser-as-a-penetration-testing-tool-with-these-add-ons/
Home
User Guide
Privacy Policy
Forgot Username
Forgot Password
Create an Account
Patient Link/Messages
Billing
Inbox
Compose
Sent Message
Trash
Schedule Page
Schedule Appt
Book Appointment
Location
Delete Appt
Print
Forms
Doenloads
Statements
Make Payment
Billing
Receipt
Settings
Progile
Authorized Rep
Account
Billing
Delete Authorised Rep
Exit
Home
https://192.168.2.38/vidalia
http://192.168.2.38:8080/DocsAttached/Patient_Portal_Guru_Guide.pdf
http://192.168.2.38:8080/DocsAttached/Privacy_Policy.pdf
http://192.168.2.38:8080/Patient/ForgotUserId.do?TB_=savedValues&TB_iframe=true&height=500&width=710&modal=true
http://192.168.2.38:8080/Patient/ForgotPassword.do?TB_=savedValues&TB_iframe=true&height=500&width=710&modal=true
192.168.2.38:8080/Patient/StartNewRegistration.do?TB_=savedValues&TB_iframe=true&scrolling=no&height=500&width=720
Landing Page
http://192.168.2.38:8080/Patient/UserHomeAction.do
http://192.168.2.38:8080/Patient/BillingAction.do
Messages
http://192.168.2.38:8080/Patient/UserInBoxMessages.do
http://192.168.2.38:8080/Patient/ComposeUserMessage.do
http://192.168.2.38:8080/Patient/UserSentMessages.do
http://192.168.2.38:8080/Patient/UserTrashMessages.do
Appointments
http://192.168.2.38:8080/Patient/UserAppointments.do
http://192.168.2.38:8080/Patient/UserAppointments.do?
on_action=csearch&advanceSearchOption=Off&setno=&setschpageno=&pageno=1&schpageno=1&portalAppointmentStartTi
01+13%3A00%3A00.0&portalAppointmentEndTime=1900-01-
01+17%3A00%3A00.0&allowSameDayAppointment=true&schpageno=1&location=65&provider=1118&reason=703&yearFrom
09&dateFrom=18&yearTo=2015&monthTo=09&dateTo=24&timeFrom=&timeTo=&mon=On&tue=On&wed=On&thu=On&fri=On
http://192.168.2.38:8080/Patient/UserAppointments.do?
on_action=schedule&advanceSearchOption=On&setno=&setschpageno=&pageno=1&schpageno=1&portalAppointmentStart
01+13%3A00%3A00.0&portalAppointmentEndTime=1900-01-
01+17%3A00%3A00.0&allowSameDayAppointment=true&schpageno=1&location=65&provider=1118&reason=703&advanceS
=2015&monthFrom=09&dateFrom=18&yearTo=2015&monthTo=09&dateTo=24&timeFrom=0&timeTo=0&mon=On&tue=On&w
On&sat=On&sun=On&schappt=9%2F18%2F2015+13%3A00%3A00patel%2C+amin+%2C+M
http://map-generator.net/extmap.php?name=Test%20Vidalia&address=ATLANTA
http://192.168.2.38:8080/Patient/UserAppointments.do?
on_action=delete&advanceSearchOption=On&setno=&setschpageno=&pageno=1&schpageno=1&portalAppointmentStartTim
01+13%3A00%3A00.0&portalAppointmentEndTime=1900-01-
01+17%3A00%3A00.0&allowSameDayAppointment=true&schpageno=1&selectedApptID=920441&location=&provider=&reas
=on&yearFrom=2015&monthFrom=09&dateFrom=18&yearTo=2015&monthTo=09&dateTo=24&timeFrom=0&timeTo=0&mon=O
&thu=On&fri=On&sat=On&sun=On
Health Info
http://192.168.2.38:8080/Patient/PatientClinicalInfoAction.do
192.168.2.38:8080/Patient/ViewDetailedCDA.do?actiontype=PRINT
http://192.168.2.38:8080/Patient/OpenTransmitCDA.do
http://192.168.2.38:8080/Patient/GetPortalActivityLog.do
http://192.168.2.38:8080/Patient/RxRefillRequest.do?
rxRefillURLRequestParam=3807&TB_=savedValues&TB_iframe=true&height=385&width=430&billing=yes
http://192.168.2.38:8080/Patient/LabResultsQuestion.do?
labURLRequestParam=262&TB_=savedValues&TB_iframe=true&height=385&width=430&scrolling=no&billing=yes
http://192.168.2.38:8080/Patient/PrintClinicalInfoAction.do?
placeValuesBeforeTB_=savedValues&TB_iframe=true&height=535&width=855&modal=true
Forms
http://192.168.2.38:8080/Patient/PracticeFormAction.do
http://192.168.2.38:8080/PDF/FORMS/vidalia/4763/Ppatel.pdf
Billing
http://192.168.2.38:8080/Patient/StatementsAction.do
http://192.168.2.38:8080/Patient/PatientPaymentAmount.do
http://192.168.2.38:8080/Patient/BillingAction.do
http://192.168.2.38:8080/PDF/REPORT/vidalia/4763/397_113c17c9cc74ad7781b31a473d4424d_Vidalia_PatientPortal.PDF
Settings
http://192.168.2.38:8080/Patient/GetSettings.do
http://192.168.2.38:8080/Patient/UserProfileAction.do
http://192.168.2.38:8080/Patient/GetPortalARDetails.do
http://192.168.2.38:8080/Patient/UserLoginInfoAction.do
http://192.168.2.38:8080/Patient/GetStmtSettings.do
http://192.168.2.38:8080/Patient/GetPortalARDetails.do#
Exit
http://192.168.2.38:8080/PDF/REPORT/vidalia/4763/397_113c17c9cc74ad7781b31a473d4424d_Vidalia_PatientPortal.PDF