barkerstores.com, XSS, GHDB DORK REPORT SUMMARY

Public Domain Vulnerability Information, Security Articles, Vulnerability Reports, GHDB, DORK Search

XSS Crawler | SQLi Crawler | HTTPi Crawler | FI Crawler
Loading
Netsparker - Scan Report Summary
TARGET URL
https://www.barkerstores.com/soundings/defaul...
SCAN DATE
5/1/2011 5:12:07 PM
REPORT DATE
5/1/2011 5:20:15 PM
SCAN DURATION
00:06:52

Total Requests

Average Speed

req/sec.
14
identified
5
confirmed
0
critical
5
informational

DORK TESTS

DORK TESTS
PROFILE
Previous Settings
ENABLED ENGINES
Blind SQL Injection, Boolean SQL Injection, Local File Inclusion, Remote File Inclusion, SQL Injection
Authentication
Scheduled

VULNERABILITIES

Vulnerabilities
Netsparker - Web Application Security Scanner
IMPORTANT
14 %
LOW
50 %
INFORMATION
36 %

VULNERABILITY SUMMARY

Vulnerability Summary
URL Parameter Method Vulnerability Confirmed
/ Cookie Not Marked As HttpOnly Yes
IIS Version Disclosure No
/soundings/ Internal Server Error Yes
ASP.NET Version Disclosure No
Database Error Message No
ASP.NET Stack Trace Disclosure No
[Possible] Internal Path Leakage (Windows) No
/soundings/default.aspx Cookie Not Marked As Secure Yes
[Possible] Local File Inclusion No
Auto Complete Enabled Yes
ViewState is not Encrypted No
E-mail Address Disclosure No
[Possible] Internal Path Leakage (Windows) No
/soundings/images/ Forbidden Resource Yes
Cookie Not Marked As Secure

Cookie Not Marked As Secure

1 TOTAL
IMPORTANT
CONFIRMED
1
A Cookie was not marked as secure and transmitted over HTTPS. This means the cookie could potentially be stolen by an attacker who can successfully intercept and decrypt the traffic or following a successful MITM (Man in the middle) attack.

Impact

This cookie will be transmitted over a HTTP connection, therefore if this cookie is important (such as a session cookie) an attacker might intercept it and hijack a victim's session. If the attacker can carry out a MITM attack, he/she can force victim to make a HTTP request to steal the cookie.

Actions to Take

  1. See the remedy for solution.
  2. Mark all cookies used within the application as secure. (If the cookie is not related to authentication or does not carry any personal information you do not have to mark it as secure.))

Remedy

Mark all cookies used within the application as secure.

Required Skills for Successful Exploitation

To exploit this issue, the attacker needs to be able to intercept traffic. This generally requires local access to the web server or victim's network. Attackers need to be understand layer 2, have physical access to systems either as way points for the traffic, or locally (have gained access to) to a system between the victim and the web server.
- /soundings/default.aspx

/soundings/default.aspx CONFIRMED

https://www.barkerstores.com/soundings/default.aspx

Identified Cookie

chk_support

Request

GET /soundings/default.aspx HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
Set-Cookie: chk_support=check; path=/
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 25323



<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML>
<HEAD>
<title>Soundings Online Catalog</title>
<meta name="GENERATOR" content="Microsoft Visual Studio.NET 7.0">
<meta name="CODE_LANGUAGE" content="Visual Basic 7.0">
<meta name="vs_defaultClientScript" content="JavaScript">
<meta name="vs_targetSchema" content="http://schemas.microsoft.com/intellisense/ie5">
<link href="Styles.css" type="text/css" rel="stylesheet">
<script language="JavaScript" src="pupdate.js">

/*
Popup calendar script by Sev Kotchnev (webmaster@personal-connections.com)
For full source code and installation instructions to this script
Visit http://www.dynamicdrive.com
*/

</script>
</HEAD>
<body>
<form name="Form1" method="post" action="default.aspx" id="Form1">
<div>
<input type="hidden" name="__EVENTTARGET" id="__EVENTTARGET" value="" />
<input type="hidden" name="__EVENTARGUMENT" id="__EVENTARGUMENT" value="" />
<input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="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" />
</div>

<script type="text/javascript">
//<![CDATA[
var theForm = document.forms['Form1'];
if (!theForm) {
theForm = document.Form1;
}
function __doPostBack(eventTarget, eventArgument) {
if (!theForm.onsubmit || (theForm.onsubmit() != false)) {
theForm.__EVENTTARGET.value = eventTarget;
theForm.__EVENTARGUMENT.value = eventArgument;
theForm.submit();
}
}
//]]>
</script>


<div>

<input type="hidden" name="__EVENTVALIDATION" id="__EVENTVALIDATION" value="/wEWCQK62ZD2AwKQ2/2GAQKR2/2GAQKS2/2GAQKT2/2GAQKU2/2GAQLax6XVAgKC69WjBAKBlPqqCaGIWAggG3ILupCT7B1zUpr9frol" />
</div>
<div align="center">
<table width="100%" height="100%" cellpadding="0" cellspacing="0" border="0" bgcolor="#ffffff">
<tr><td><img src="images/spacer.gif" height="10"/></td></tr>
<tr>
<td valign="top" align="center">
<table width="760" cellspacing="0" cellpadding="0" border="0">
<tr><td id="pageHeaderCell" colspan="2" height="175">
<table width="100%" height="175" cellspacing="0" cellpadding="0" border="0" style="BACKGROUND-IMAGE: url(images/header.jpg); BACKGROUND-REPEAT: no-repeat">
<tr>
<td valign="top">
<table width="170" cellpadding="0" border="0" style="MARGIN-TOP: 5px; MARGIN-LEFT: 165px">
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="default.aspx" class="LeftNavBlue">Catalog Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="http://www.soundingsonline.com" class="LeftNavBlue" target="_blank">Soundings
Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" bgcolor="#29719c" cellpadding="2" border="0">
<tr>
<td class="cool8Ltblue">Shop by Price:</td>
</tr>
<tr>
<td><select name="ctl00$ddlCostSearch" id="ctl00_ddlCostSearch" class="ddlCtrl">
<option value="A">Under $15.00</option>
<option value="B">$15.00 - $29.99</option>
<option value="C">$30.00 - $49.99</option>
<option value="D">$50.00 - $75.00</option>
<option value="E">Over $75.00</option>

</select><img src="images/spacer.gif" width="5"><a id="ctl00_lbCostGo" class="navLtBlue" href="javascript:__doPostBack('ctl00$lbCostGo','')">GO</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td id="leftNavigationCell" valign="top" width="155" height="100%">
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0">
<tr>
<td valign="top">
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0" bgcolor="#bddff7">
<tr>
<td><img src="images/spacer.gif" height="2"></td>
</tr>
<tr>
<td><div id="ctl01_pnlCats">
<table width="155" cellspacing="3" cellpadding="0" border="0" border="0">
<tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=A">Hats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=B">Outerwear</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=C">T's & Sweats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=D">Polo's & Dress Shirts</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=E">Bags</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=F">Miscellaneous</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr>
</table>
</div></td>
</tr>
<tr>
<td vAlign="top" align="center">
<table width="96%" bgcolor="#ffffff" cellpadding="0" cellspacing="0" border="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c" height="20"><img src="images/spacer.gif" width="5">Cart
Snapshot:</td>
</tr>
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td align="center">
<table cellSpacing="0" cellPadding="0" width="95%" border="0">
<tr>
<td height="1"><span id="ctl01_cart_lblEmptyMsg" class="cool8">Your cart is empty</span></td>
</tr>
<!-- Cart SubTotal -->
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td class="cool8" align="right" height="1">Sub Total:&nbsp;<span id="ctl01_cart_lblCartTotal" class="cool8">$0.00</span></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<!-- Cart Tax -->
<tr>
<td class="cool8" align="right" height="1">Tax*:&nbsp;<span id="ctl01_cart_lblTax" class="cool8">$0.00</span><br>
<font class="cool7">*If shipping to CT</font></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td align="center">
<table cellPadding="0" width="90%" border="0">
<tr>
<td align="center"><a id="ctl01_cart_HypViewCart" class="headerNav" href="default.aspx?action=shoppingcart">View Cart</a></td>
<!-- <td class="cool8" width="5">|</td> -->
<td width="1"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td><img src="images/spacer.gif" height="4"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" cellpadding="2" border="0" cellspacing="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c">Need Help?:</td>
</tr>
<tr>
<td align="center">
<table width="80%">
<tr>
<td><a href="default.aspx?action=sitemap" class="LeftNavBlue">Site Map</a></td>
</tr>
<tr>
<td><a href="default.aspx?action=service" class="LeftNavBlue">Customer Service</a></td>
</tr>
<tr>
<td><a href="default.aspx" class="LeftNavBlue">1-800-BARKERS</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="17"><img src="images/nav_bottom_curve.jpg"></td>
</tr>
<tr>
<td height="*" bgcolor="#ffffff"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="*"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>

<td id="pageContentsCell" valign="top" width="580">
<table width="100%" height="100%" cellspacing="0" cellpadding="0" border="0">
<tr>
<td>
<table>
<TBODY>
<tr>
<td valign="top">
<!-- Welcome Message -->
<table width="95%">
<tr>
<td><img src="images/welcome.jpg"></td>
</tr>
<tr>
<td class="cool8blk">Here you will find quality products displaying the Soundings
logo proudly. Be sure to come back often, as new and exciting products will be
added. To begin shopping, select a product category from above. To browse by
product price, select a price category from the left.
</td>
</tr>
</table>
</td>
<td width="200">

<table cellSpacing="0" cellPadding="0" border="0">
<tr>
<td height="50"><IMG src="images/left_gray_curve.jpg"></td>
<td bgColor="#dedfde" height="50">
<table>
<tr>
<td><div id="ctl02_login_pnlNo">

<TABLE border="0">
<TR>
<TD class="cool8blk">Corporate Code:<BR>
<input name="ctl02$login$txtPassword" type="password" id="ctl02_login_txtPassword" class="txBox" style="width:85px;" />
</TD>
<TD vAlign="bottom" align="center" width="65">
<a id="ctl02_login_lbLogin" href="javascript:__doPostBack('ctl02$login$lbLogin','')">ENTER</a></TD>
</TR>
</TABLE>

</div></td>
</tr>
<tr>
<td></td>
</tr>
</table>
</td>
<td><IMG src="images/right_gray_curve.jpg"></td>
</tr>
</table>
</td>
</td>
</tr>
</table></TD></TR>
<tr>
<td valign="top" width="400">
<table width="100%" cellspacing="5" cellpadding="5" border="0">
<!-- Product Spotlight Display -->
<tr>
<td><img src="images/feat_prod.jpg"></td>
</tr>
&l..
[Possible] Local File Inclusion

[Possible] Local File Inclusion

1 TOTAL
IMPORTANT
A Local File Inclusion (LFI) vulnerability occurs when a file from the target system is injected into attacked server page.

Impact

Impact can differ based on the exploitation and the read permission of the web server user. Depends on these factors an attacker might carry out one or more of the following attacks:

Remedy

- /soundings/default.aspx

/soundings/default.aspx

https://www.barkerstores.com/soundings/default.aspx?action=../../../../../../../../../../boot.ini&cat=A

Identified Error Message

Cannot use a leading .. to exit above the top directory

Request

GET /soundings/default.aspx?action=../../../../../../../../../../boot.ini&cat=A HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:12:04 GMT
Content-Length: 5492


<html>
<head>
<title>Cannot use a leading .. to exit above the top directory.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>Cannot use a leading .. to exit above the top directory.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Web.HttpException: Cannot use a leading .. to exit above the top directory.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[HttpException (0x80004005): Cannot use a leading .. to exit above the top directory.]
System.Web.Util.UrlPath.ReduceVirtualPath(String path) +8861959
System.Web.Util.UrlPath.Reduce(String path) +52
System.Web.Util.UrlPath.Combine(String appPath, String basepath, String relative) +214
System.Web.VirtualPath.Combine(VirtualPath relativePath) +119
System.Web.VirtualPath.Combine(VirtualPath v1, VirtualPath v2) +53
System.Web.UI.TemplateControl.LoadControl(VirtualPath virtualPath) +24
System.Web.UI.TemplateControl.LoadControl(String virtualPath) +26
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:139
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[HttpException]: Cannot use a leading .. to exit above the top directory.
at System.Web.Util.UrlPath.ReduceVirtualPath(String path)
at System.Web.Util.UrlPath.Reduce(String path)
at System.Web.Util.UrlPath.Combine(String appPath, String basepath, String relative)
at System.Web.VirtualPath.Combine(VirtualPath relativePath)
at System.Web.VirtualPath.Combine(VirtualPath v1, VirtualPath v2)
at System.Web.UI.TemplateControl.LoadControl(VirtualPath virtualPath)
at System.Web.UI.TemplateControl.LoadControl(String virtualPath)
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 139
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->
Internal Server Error

Internal Server Error

1 TOTAL
LOW
CONFIRMED
1
The Server responded with an HTTP status 500. This indicates that there is a server-side error. Reasons may vary. The behavior should be analysed carefully. If Netsparker is able to find a security issue in the same resource it will report this as a separate vulnerability.

Impact

The impact may vary depending on the condition. Generally this indicates poor coding practices, not enough error checking, sanitization and whitelisting. However there might be a bigger issue such as SQL Injection. If that's the case Netsparker will check for other possible issues and report them separately.

Remedy

Analyse this issue and review the application code in order to handle unexpected errors, this should be a generic practice which does not disclose further information upon an error. All errors should be handled server side only.
- /soundings/

/soundings/ CONFIRMED

https://www.barkerstores.com/soundings/

Request

GET /soundings/ HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 7065


<html>
<head>
<title>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Data.OleDb.OleDbException: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[OleDbException (0x80004005): The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.]
System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr) +1006096
System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object&amp; executeResult) +255
System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object&amp; executeResult) +188
System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object&amp; executeResult) +58
System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method) +161
System.Data.OleDb.OleDbCommand.ExecuteNonQuery() +113
Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:174
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:98
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[OleDbException]: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr)
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)
at System.Data.OleDb.OleDbCommand.ExecuteNonQuery()
at Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:line 174
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 98
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->
Auto Complete Enabled

Auto Complete Enabled

1 TOTAL
LOW
CONFIRMED
1
"Auto Complete" was enabled in one or more of the form fields. These were either "password" fields or important fields such as "Credit Card".

Impact

Data entered in these fields will be cached by the browser. An attacker who can access the victim's browser could steal this information. This is especially important if the application is commonly used in shared computers such as cyber cafes or airport terminals.

Remedy

Add the attribute autocomplete="off" to the form tag or to individual "input" fields.

Actions to Take

  1. See the remedy for the solution.
  2. Find all instances of inputs which store private data and disable autocomplete. Fields which contain data such as "Credit Card" or "CCV" type data should not be cached. You can allow the application to cache usernames and remember passwords, however, in most cases this is not recommended.
  3. Re-scan the application after addressing the identified issues to ensure that all of the fixes have been applied properly.

Required Skills for Successful Exploitation

Dumping all data from a browser can be fairly easy and there exist a number of automated tools to undertake this. Where the attacker cannot dump the data, he/she could still browse the recently visited websites and activate the auto-complete feature to see previously entered values.

External References

- /soundings/default.aspx

/soundings/default.aspx CONFIRMED

https://www.barkerstores.com/soundings/default.aspx?action=details&showme=SOU20&cat=F&cost=

Identified Field Name

ctl02$login$txtPassword

Request

GET /soundings/default.aspx?action=details&showme=SOU20&cat=F&cost= HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
Set-Cookie: chk_support=check; path=/
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:44 GMT
Content-Length: 21771



<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML>
<HEAD>
<title>Soundings Online Catalog</title>
<meta name="GENERATOR" content="Microsoft Visual Studio.NET 7.0">
<meta name="CODE_LANGUAGE" content="Visual Basic 7.0">
<meta name="vs_defaultClientScript" content="JavaScript">
<meta name="vs_targetSchema" content="http://schemas.microsoft.com/intellisense/ie5">
<link href="Styles.css" type="text/css" rel="stylesheet">
<script language="JavaScript" src="pupdate.js">

/*
Popup calendar script by Sev Kotchnev (webmaster@personal-connections.com)
For full source code and installation instructions to this script
Visit http://www.dynamicdrive.com
*/

</script>
</HEAD>
<body>
<form name="Form1" method="post" action="default.aspx?action=details&amp;showme=SOU20&amp;cat=F&amp;cost=" id="Form1">
<div>
<input type="hidden" name="__EVENTTARGET" id="__EVENTTARGET" value="" />
<input type="hidden" name="__EVENTARGUMENT" id="__EVENTARGUMENT" value="" />
<input type="hidden" name="__LASTFOCUS" id="__LASTFOCUS" value="" />
<input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="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" />
</div>

<script type="text/javascript">
//<![CDATA[
var theForm = document.forms['Form1'];
if (!theForm) {
theForm = document.Form1;
}
function __doPostBack(eventTarget, eventArgument) {
if (!theForm.onsubmit || (theForm.onsubmit() != false)) {
theForm.__EVENTTARGET.value = eventTarget;
theForm.__EVENTARGUMENT.value = eventArgument;
theForm.submit();
}
}
//]]>
</script>


<div>

<input type="hidden" name="__EVENTVALIDATION" id="__EVENTVALIDATION" value="/wEWEAL7sP7WCgKQ2/2GAQKR2/2GAQKS2/2GAQKT2/2GAQKU2/2GAQLax6XVAgKx7aC/DQK8ya+TCAKQw5yfCAKH4rfhCgLXobXLCQKD+JT1DwKC69WjBAKBlPqqCQLd2oarBs30wMU3uncA6z9blF1sxdqOnCa/" />
</div>
<div align="center">
<table width="100%" height="100%" cellpadding="0" cellspacing="0" border="0" bgcolor="#ffffff">
<tr><td><img src="images/spacer.gif" height="10"/></td></tr>
<tr>
<td valign="top" align="center">
<table width="760" cellspacing="0" cellpadding="0" border="0">
<tr><td id="pageHeaderCell" colspan="2" height="175">
<table width="100%" height="175" cellspacing="0" cellpadding="0" border="0" style="BACKGROUND-IMAGE: url(images/header.jpg); BACKGROUND-REPEAT: no-repeat">
<tr>
<td valign="top">
<table width="170" cellpadding="0" border="0" style="MARGIN-TOP: 5px; MARGIN-LEFT: 165px">
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="default.aspx" class="LeftNavBlue">Catalog Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="http://www.soundingsonline.com" class="LeftNavBlue" target="_blank">Soundings
Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" bgcolor="#29719c" cellpadding="2" border="0">
<tr>
<td class="cool8Ltblue">Shop by Price:</td>
</tr>
<tr>
<td><select name="ctl00$ddlCostSearch" id="ctl00_ddlCostSearch" class="ddlCtrl">
<option value="A">Under $15.00</option>
<option value="B">$15.00 - $29.99</option>
<option value="C">$30.00 - $49.99</option>
<option value="D">$50.00 - $75.00</option>
<option value="E">Over $75.00</option>

</select><img src="images/spacer.gif" width="5"><a id="ctl00_lbCostGo" class="navLtBlue" href="javascript:__doPostBack('ctl00$lbCostGo','')">GO</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td id="leftNavigationCell" valign="top" width="155" height="100%">
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0">
<tr>
<td valign="top">
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0" bgcolor="#bddff7">
<tr>
<td><img src="images/spacer.gif" height="2"></td>
</tr>
<tr>
<td><div id="ctl01_pnlCats">
<table width="155" cellspacing="3" cellpadding="0" border="0" border="0">
<tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=A">Hats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=B">Outerwear</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=C">T's & Sweats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=D">Polo's & Dress Shirts</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=E">Bags</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=F">Miscellaneous</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr>
</table>
</div></td>
</tr>
<tr>
<td vAlign="top" align="center">
<table width="96%" bgcolor="#ffffff" cellpadding="0" cellspacing="0" border="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c" height="20"><img src="images/spacer.gif" width="5">Cart
Snapshot:</td>
</tr>
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td align="center">
<table cellSpacing="0" cellPadding="0" width="95%" border="0">
<tr>
<td height="1"><span id="ctl01_cart_lblEmptyMsg" class="cool8">Your cart is empty</span></td>
</tr>
<!-- Cart SubTotal -->
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td class="cool8" align="right" height="1">Sub Total:&nbsp;<span id="ctl01_cart_lblCartTotal" class="cool8">$0.00</span></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<!-- Cart Tax -->
<tr>
<td class="cool8" align="right" height="1">Tax*:&nbsp;<span id="ctl01_cart_lblTax" class="cool8">$0.00</span><br>
<font class="cool7">*If shipping to CT</font></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td align="center">
<table cellPadding="0" width="90%" border="0">
<tr>
<td align="center"><a id="ctl01_cart_HypViewCart" class="headerNav" href="default.aspx?action=shoppingcart">View Cart</a></td>
<!-- <td class="cool8" width="5">|</td> -->
<td width="1"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td><img src="images/spacer.gif" height="4"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" cellpadding="2" border="0" cellspacing="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c">Need Help?:</td>
</tr>
<tr>
<td align="center">
<table width="80%">
<tr>
<td><a href="default.aspx?action=sitemap" class="LeftNavBlue">Site Map</a></td>
</tr>
<tr>
<td><a href="default.aspx?action=service" class="LeftNavBlue">Customer Service</a></td>
</tr>
<tr>
<td><a href="default.aspx" class="LeftNavBlue">1-800-BARKERS</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="17"><img src="images/nav_bottom_curve.jpg"></td>
</tr>
<tr>
<td height="*" bgcolor="#ffffff"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="*"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>

<td id="pageContentsCell" valign="top" width="580">
<table height="100%" cellSpacing="2" cellPadding="2" width="100%" border="0">
<tr>
<td align="left" height="1">
<table width="100%">
<tr>
<td class="cool8" vAlign="bottom" width="210"><img src="images/arrow_circle.jpg" id="ctl02_imgBullet" name="imgBullet" align="absBottom" />&nbsp;<a id="ctl02_lbBack" class="leftNavBlue" href="javascript:__doPostBack('ctl02$lbBack','')"><span id="ctl02_lblCatName">Miscellaneous</span></a></td>
<td width="*"><span id="ctl02_lblItem" class="cool10blkbld">Ceramic Coffee Mug</span></td>
</tr>
</table>
</td>
</tr>
<tr>
<td vAlign="top" align="center" width="100%" bgColor="#ffffff" height="1">
<table width="100%">
<tr>
<td vAlign="top" align="center" width="225">
<table>
<tr>
<td height="200"><img id="ctl02_imgProduct" src="images/details/SOU20.jpg" style="border-width:0px;" /></td>
</tr>
<tr>
<td class="cool8" align="center">Item #&nbsp;<span id="ctl02_lblCatItemNo">SOU-20</span></td>
</tr>
<tr>
<td align="center"><a id="ctl02_hypEnlarge" href="javascript:mywindow=window.open('zoomer.aspx?showme=SOU20&amp;w=400&amp;h=300','mywindow', 'height=370, width=400');mywindow.focus();"><img src="images/mag.jpg" border="0" align="absmiddle" />View Enlarged Image</a></td>
</tr>
</table>
</td>
<td vAlign="top">
<table cellPadding="4" width="90%">
<tr>
<td class="cool9" height="1"><div id="ctl02_pnlDesc">
<table>
<tr>
<td><img src="images/bullet.gif" /></td>
<td><span class="cool8blk">Ceramic 17 oz. duo tone mug</span></td>
</tr>
<tr>
<td><img src="images/bullet.gif" /></td>
<td><span class="cool8blk">Imprinted on two sides in two color logo</span></td>
</tr>
</table>

</div></td>
</tr>
<tr>
<td class="cool9" height="1"><span id="ctl02_lblStock"></span></td>
&..
Cookie Not Marked As HttpOnly

Cookie Not Marked As HttpOnly

1 TOTAL
LOW
CONFIRMED
1
Cookie was not marked as HTTPOnly. HTTPOnly cookies can not be read by client-side scripts therefore marking a cookie as HTTPOnly can provide an additional layer of protection against Cross-site Scripting attacks..

Impact

During a Cross-site Scripting attack an attacker might easily access cookies and hijack the victim's session.

Actions to Take

  1. See the remedy for solution
  2. Consider marking all of the cookies used by the application as HTTPOnly (After these changes javascript code will not able to read cookies.

Remedy

Mark the cookie as HTTPOnly. This will be an extra layer of defence against XSS. However this is not a silver bullet and will not protect the system against Cross-site Scripting attacks. An attacker can use a tool such as XSS Tunnel to bypass HTTPOnly protection.

External References

- /

/ CONFIRMED

https://www.barkerstores.com/

Identified Cookie

ASPSESSIONIDAUDTCBQA

Request

GET / HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 302 Object moved
Cache-Control: private
Content-Length: 131
Content-Type: text/html
Location: index.html
Server: Microsoft-IIS/7.0
Set-Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; secure; path=/
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT


<head><title>Object moved</title></head><body><h1>Object Moved</h1>This object may be found <a HREF="index.html">here</a>.</body>
ASP.NET Version Disclosure

ASP.NET Version Disclosure

1 TOTAL
LOW
Netsparker identified that the target web server is disclosing ASP.NET version in the HTTP response. This information can help an attacker to develop further attacks and also the system can become an easier target for automated attacks. It was leaked from X-AspNet-Version banner of HTTP response or default ASP.NET error page.

Impact

An attacker can use disclosed information to harvest specific security vulnerabilities for the version identified. The attacker can also use this information in conjunction with the other vulnerabilities in the application or web server.

Remedy

Apply the following changes on your web.config file to prevent information leakage by using custom error pages and removing X-AspNet-Version from HTTP responses.
<System.Web>
     < httpRuntime enableVersionHeader="false" /> 
     <customErrors mode="On" defaultRedirect="~/error/GeneralError.aspx">
          <error statusCode="403" redirect="~/error/Forbidden.aspx" />
          <error statusCode="404" redirect="~/error/PageNotFound.aspx" />
          <error statusCode="500" redirect="~/error/InternalError.aspx" />
     </customErrors>
</System.Web>

Remedy References

- /soundings/

/soundings/

https://www.barkerstores.com/soundings/

Extracted Version

Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

Request

GET /soundings/ HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 7065


<html>
<head>
<title>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Data.OleDb.OleDbException: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[OleDbException (0x80004005): The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.]
System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr) +1006096
System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object&amp; executeResult) +255
System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object&amp; executeResult) +188
System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object&amp; executeResult) +58
System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method) +161
System.Data.OleDb.OleDbCommand.ExecuteNonQuery() +113
Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:174
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:98
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[OleDbException]: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr)
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)
at System.Data.OleDb.OleDbCommand.ExecuteNonQuery()
at Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:line 174
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 98
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->
Database Error Message

Database Error Message

1 TOTAL
LOW
Netsparker identified a database error message.

Impact

The error message may disclose sensitive information and this information can be used by an attacker to mount new attacks or to enlarge the attack surface. In rare conditions this may be a clue for an SQL Injection vulnerability. Most of the time Netsparker will detect and report that problem separately.

Remedy

Do not provide any error messages on production environments. Save error messages with a reference number to a backend storage such as a text file or database, then show this number and a static user-friendly error message to the user.
- /soundings/

/soundings/

https://www.barkerstores.com/soundings/

Request

GET /soundings/ HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 7065


<html>
<head>
<title>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Data.OleDb.OleDbException: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[OleDbException (0x80004005): The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.]
System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr) +1006096
System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object&amp; executeResult) +255
System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object&amp; executeResult) +188
System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object&amp; executeResult) +58
System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method) +161
System.Data.OleDb.OleDbCommand.ExecuteNonQuery() +113
Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:174
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:98
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[OleDbException]: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr)
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)
at System.Data.OleDb.OleDbCommand.ExecuteNonQuery()
at Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:line 174
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 98
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->
ASP.NET Stack Trace Disclosure

ASP.NET Stack Trace Disclosure

1 TOTAL
LOW
Netsparker identified that the target web server is disclosing ASP.NET stack trace data in the HTTP response.

Impact

An attacker can obtain information such as: This information can help an attacker to gain more information and to potentially focus the development of further attacks for the target system.

Remedy

Apply following changes on your web.config file to prevent information leakage by applying custom error pages.
<System.Web>
     <customErrors mode="On" defaultRedirect="~/error/GeneralError.aspx">
          <error statusCode="403" redirect="~/error/Forbidden.aspx" />
          <error statusCode="404" redirect="~/error/PageNotFound.aspx" />
          <error statusCode="500" redirect="~/error/InternalError.aspx" />
     </customErrors>
</System.Web>

Remedy References

- /soundings/

/soundings/

https://www.barkerstores.com/soundings/

Request

GET /soundings/ HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 7065


<html>
<head>
<title>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Data.OleDb.OleDbException: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[OleDbException (0x80004005): The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.]
System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr) +1006096
System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object&amp; executeResult) +255
System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object&amp; executeResult) +188
System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object&amp; executeResult) +58
System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method) +161
System.Data.OleDb.OleDbCommand.ExecuteNonQuery() +113
Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:174
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:98
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[OleDbException]: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr)
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)
at System.Data.OleDb.OleDbCommand.ExecuteNonQuery()
at Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:line 174
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 98
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->
ViewState is not Encrypted

ViewState is not Encrypted

1 TOTAL
LOW
Netsparker identified that the target web application doesn't use encryption on ViewState data.

Impact

An attacker can study the application's state management logic for possible vulnerabilities and if your application stores application-critical information in the ViewState; it will also be revealed.

Remedy

ASP.NET provides encryption for ViewState parameters.

For page based protection, place the following directive at the top of affected page.
<%@Page ViewStateEncryptionMode="Always" %>
You can also set this option for the whole application by using web.config files. Apply the following configuration for your application's web.config file.
<System.Web>
	<pages viewStateEncryptionMode="Always"> 
</System.Web>      

Remedy References

- /soundings/default.aspx

/soundings/default.aspx

https://www.barkerstores.com/soundings/default.aspx?action=cats&cat=C

ViewState Version

.NET Framework 2.x

Request

GET /soundings/default.aspx?action=cats&cat=C HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
Set-Cookie: chk_support=check; path=/
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 24354



<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML>
<HEAD>
<title>Soundings Online Catalog</title>
<meta name="GENERATOR" content="Microsoft Visual Studio.NET 7.0">
<meta name="CODE_LANGUAGE" content="Visual Basic 7.0">
<meta name="vs_defaultClientScript" content="JavaScript">
<meta name="vs_targetSchema" content="http://schemas.microsoft.com/intellisense/ie5">
<link href="Styles.css" type="text/css" rel="stylesheet">
<script language="JavaScript" src="pupdate.js">

/*
Popup calendar script by Sev Kotchnev (webmaster@personal-connections.com)
For full source code and installation instructions to this script
Visit http://www.dynamicdrive.com
*/

</script>
</HEAD>
<body>
<form name="Form1" method="post" action="default.aspx?action=cats&amp;cat=C" id="Form1">
<div>
<input type="hidden" name="__EVENTTARGET" id="__EVENTTARGET" value="" />
<input type="hidden" name="__EVENTARGUMENT" id="__EVENTARGUMENT" value="" />
<input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="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" />
</div>

<script type="text/javascript">
//<![CDATA[
var theForm = document.forms['Form1'];
if (!theForm) {
theForm = document.Form1;
}
function __doPostBack(eventTarget, eventArgument) {
if (!theForm.onsubmit || (theForm.onsubmit() != false)) {
theForm.__EVENTTARGET.value = eventTarget;
theForm.__EVENTARGUMENT.value = eventArgument;
theForm.submit();
}
}
//]]>
</script>


<div>

<input type="hidden" name="__EVENTVALIDATION" id="__EVENTVALIDATION" value="/wEWBwK7vv3qBgKQ2/2GAQKR2/2GAQKS2/2GAQKT2/2GAQKU2/2GAQLax6XVAszRqgvXxgQour++KhHC/cho+L6+" />
</div>
<div align="center">
<table width="100%" height="100%" cellpadding="0" cellspacing="0" border="0" bgcolor="#ffffff">
<tr><td><img src="images/spacer.gif" height="10"/></td></tr>
<tr>
<td valign="top" align="center">
<table width="760" cellspacing="0" cellpadding="0" border="0">
<tr><td id="pageHeaderCell" colspan="2" height="175">
<table width="100%" height="175" cellspacing="0" cellpadding="0" border="0" style="BACKGROUND-IMAGE: url(images/header.jpg); BACKGROUND-REPEAT: no-repeat">
<tr>
<td valign="top">
<table width="170" cellpadding="0" border="0" style="MARGIN-TOP: 5px; MARGIN-LEFT: 165px">
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="default.aspx" class="LeftNavBlue">Catalog Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="http://www.soundingsonline.com" class="LeftNavBlue" target="_blank">Soundings
Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" bgcolor="#29719c" cellpadding="2" border="0">
<tr>
<td class="cool8Ltblue">Shop by Price:</td>
</tr>
<tr>
<td><select name="ctl00$ddlCostSearch" id="ctl00_ddlCostSearch" class="ddlCtrl">
<option value="A">Under $15.00</option>
<option value="B">$15.00 - $29.99</option>
<option value="C">$30.00 - $49.99</option>
<option value="D">$50.00 - $75.00</option>
<option value="E">Over $75.00</option>

</select><img src="images/spacer.gif" width="5"><a id="ctl00_lbCostGo" class="navLtBlue" href="javascript:__doPostBack('ctl00$lbCostGo','')">GO</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td id="leftNavigationCell" valign="top" width="155" height="100%">
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0">
<tr>
<td valign="top">
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0" bgcolor="#bddff7">
<tr>
<td><img src="images/spacer.gif" height="2"></td>
</tr>
<tr>
<td><div id="ctl01_pnlCats">
<table width="155" cellspacing="3" cellpadding="0" border="0" border="0">
<tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=A">Hats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=B">Outerwear</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=C">T's & Sweats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=D">Polo's & Dress Shirts</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=E">Bags</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=F">Miscellaneous</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr>
</table>
</div></td>
</tr>
<tr>
<td vAlign="top" align="center">
<table width="96%" bgcolor="#ffffff" cellpadding="0" cellspacing="0" border="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c" height="20"><img src="images/spacer.gif" width="5">Cart
Snapshot:</td>
</tr>
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td align="center">
<table cellSpacing="0" cellPadding="0" width="95%" border="0">
<tr>
<td height="1"><span id="ctl01_cart_lblEmptyMsg" class="cool8">Your cart is empty</span></td>
</tr>
<!-- Cart SubTotal -->
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td class="cool8" align="right" height="1">Sub Total:&nbsp;<span id="ctl01_cart_lblCartTotal" class="cool8">$0.00</span></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<!-- Cart Tax -->
<tr>
<td class="cool8" align="right" height="1">Tax*:&nbsp;<span id="ctl01_cart_lblTax" class="cool8">$0.00</span><br>
<font class="cool7">*If shipping to CT</font></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td align="center">
<table cellPadding="0" width="90%" border="0">
<tr>
<td align="center"><a id="ctl01_cart_HypViewCart" class="headerNav" href="default.aspx?action=shoppingcart">View Cart</a></td>
<!-- <td class="cool8" width="5">|</td> -->
<td width="1"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td><img src="images/spacer.gif" height="4"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" cellpadding="2" border="0" cellspacing="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c">Need Help?:</td>
</tr>
<tr>
<td align="center">
<table width="80%">
<tr>
<td><a href="default.aspx?action=sitemap" class="LeftNavBlue">Site Map</a></td>
</tr>
<tr>
<td><a href="default.aspx?action=service" class="LeftNavBlue">Customer Service</a></td>
</tr>
<tr>
<td><a href="default.aspx" class="LeftNavBlue">1-800-BARKERS</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="17"><img src="images/nav_bottom_curve.jpg"></td>
</tr>
<tr>
<td height="*" bgcolor="#ffffff"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="*"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>

<td id="pageContentsCell" valign="top" width="580">
<table width="100%" height="1" cellspacing="0" cellpadding="0" border="0">
<tr>
<td width="580" height="1">
<table width="100%">
<tr>
<td>
<table width="100%">
<tr>
<td class="cool8"><img src="images/spacer.gif" align="absMiddle" width="15" height="1">You
are here:&nbsp;<span id="ctl02_lblCatName" class="detailHeader">T's & Sweats</span></td>
<td class="cool9" align="right"><span id="ctl02_lblMsg"><font class='coolNum'>4</font> results in category.</span>&nbsp;&nbsp;</td>
</tr>
</table>
</td>
<td height="10" valign="bottom">
<table width="100%" cellspacing="0" cellpadding="0" border="0">
<tr>
<td valign="top" align="right" height="10">
<table cellspacing="0" cellpadding="0" border="0">
<tr>
<td class="cool9">Page&nbsp;<span id="ctl02_lblCurPage" class="cool9">1</span>&nbsp;of&nbsp;<span id="ctl02_lblTtlPage" class="cool9">1</span></td>
</tr>
</table>
</td>
<td width="50" valign="top"><img src="images/spacer.gif" width="5" height="1">


</td>
</tr>
</table>
</td>
</tr>
<tr>
<td align="center"><table width="95%" cellpadding="0" cellspacing="0" border="0">
<tr>
<td height="1">

</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
<table width="100%" height="*" cellspacing="5" cellpadding="5" border="0">
<tr>
<td valign="top" bgcolor=&qu..
Forbidden Resource

Forbidden Resource

1 TOTAL
INFORMATION
CONFIRMED
1
Access to this resource has been denied by the web server. This is generally not a security issue, and is reported here for information purposes.

Impact

There is no impact resulting from this issue.
- /soundings/images/

/soundings/images/ CONFIRMED

https://www.barkerstores.com/soundings/images/

Request

GET /soundings/images/ HTTP/1.1
Referer: https://www.barkerstores.com/soundings/images/spacer.gif
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 403 Forbidden
Content-Type: text/html
Server: Microsoft-IIS/7.0
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:43 GMT
Content-Length: 1233


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"/>
<title>403 - Forbidden: Access is denied.</title>
<style type="text/css">
<!--
body{margin:0;font-size:.7em;font-family:Verdana, Arial, Helvetica, sans-serif;background:#EEEEEE;}
fieldset{padding:0 15px 10px 15px;}
h1{font-size:2.4em;margin:0;color:#FFF;}
h2{font-size:1.7em;margin:0;color:#CC0000;}
h3{font-size:1.2em;margin:10px 0 0 0;color:#000000;}
#header{width:96%;margin:0 0 0 0;padding:6px 2% 6px 2%;font-family:"trebuchet MS", Verdana, sans-serif;color:#FFF;
background-color:#555555;}
#content{margin:0 0 0 2%;position:relative;}
.content-container{background:#FFF;width:96%;margin-top:8px;padding:10px;position:relative;}
-->
</style>
</head>
<body>
<div id="header"><h1>Server Error</h1></div>
<div id="content">
<div class="content-container"><fieldset>
<h2>403 - Forbidden: Access is denied.</h2>
<h3>You do not have permission to view this directory or page using the credentials that you supplied.</h3>
</fieldset></div>
</div>
</body>
</html>
E-mail Address Disclosure

E-mail Address Disclosure

1 TOTAL
INFORMATION
Netsparker found e-mail addresses on the web site.

Impact

E-mail addresses discovered within the application can be used by both spam email engines and also brute force tools. Furthermore valid email addresses may lead to social engineering attacks .

Remedy

Use generic email addresses such as contact@ or info@ for general communications, remove user/people specific e-mail addresses from the web site, should this be required use submission forms for this purpose.

External References

- /soundings/default.aspx

/soundings/default.aspx

https://www.barkerstores.com/soundings/default.aspx

Found E-mails

webmaster@personal-connections.com

Request

GET /soundings/default.aspx HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
Set-Cookie: chk_support=check; path=/
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 25323



<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML>
<HEAD>
<title>Soundings Online Catalog</title>
<meta name="GENERATOR" content="Microsoft Visual Studio.NET 7.0">
<meta name="CODE_LANGUAGE" content="Visual Basic 7.0">
<meta name="vs_defaultClientScript" content="JavaScript">
<meta name="vs_targetSchema" content="http://schemas.microsoft.com/intellisense/ie5">
<link href="Styles.css" type="text/css" rel="stylesheet">
<script language="JavaScript" src="pupdate.js">

/*
Popup calendar script by Sev Kotchnev (webmaster@personal-connections.com)
For full source code and installation instructions to this script
Visit http://www.dynamicdrive.com
*/

</script>
</HEAD>
<body>
<form name="Form1" method="post" action="default.aspx" id="Form1">
<div>
<input type="hidden" name="__EVENTTARGET" id="__EVENTTARGET" value="" />
<input type="hidden" name="__EVENTARGUMENT" id="__EVENTARGUMENT" value="" />
<input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="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" />
</div>

<script type="text/javascript">
//<![CDATA[
var theForm = document.forms['Form1'];
if (!theForm) {
theForm = document.Form1;
}
function __doPostBack(eventTarget, eventArgument) {
if (!theForm.onsubmit || (theForm.onsubmit() != false)) {
theForm.__EVENTTARGET.value = eventTarget;
theForm.__EVENTARGUMENT.value = eventArgument;
theForm.submit();
}
}
//]]>
</script>


<div>

<input type="hidden" name="__EVENTVALIDATION" id="__EVENTVALIDATION" value="/wEWCQK62ZD2AwKQ2/2GAQKR2/2GAQKS2/2GAQKT2/2GAQKU2/2GAQLax6XVAgKC69WjBAKBlPqqCaGIWAggG3ILupCT7B1zUpr9frol" />
</div>
<div align="center">
<table width="100%" height="100%" cellpadding="0" cellspacing="0" border="0" bgcolor="#ffffff">
<tr><td><img src="images/spacer.gif" height="10"/></td></tr>
<tr>
<td valign="top" align="center">
<table width="760" cellspacing="0" cellpadding="0" border="0">
<tr><td id="pageHeaderCell" colspan="2" height="175">
<table width="100%" height="175" cellspacing="0" cellpadding="0" border="0" style="BACKGROUND-IMAGE: url(images/header.jpg); BACKGROUND-REPEAT: no-repeat">
<tr>
<td valign="top">
<table width="170" cellpadding="0" border="0" style="MARGIN-TOP: 5px; MARGIN-LEFT: 165px">
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="default.aspx" class="LeftNavBlue">Catalog Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="20"><a href="http://www.soundingsonline.com" class="LeftNavBlue" target="_blank">Soundings
Home Page</a></td>
</tr>
<tr>
<td bgcolor="#29719c"><img src="images/spacer.gif"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" bgcolor="#29719c" cellpadding="2" border="0">
<tr>
<td class="cool8Ltblue">Shop by Price:</td>
</tr>
<tr>
<td><select name="ctl00$ddlCostSearch" id="ctl00_ddlCostSearch" class="ddlCtrl">
<option value="A">Under $15.00</option>
<option value="B">$15.00 - $29.99</option>
<option value="C">$30.00 - $49.99</option>
<option value="D">$50.00 - $75.00</option>
<option value="E">Over $75.00</option>

</select><img src="images/spacer.gif" width="5"><a id="ctl00_lbCostGo" class="navLtBlue" href="javascript:__doPostBack('ctl00$lbCostGo','')">GO</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td id="leftNavigationCell" valign="top" width="155" height="100%">
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0">
<tr>
<td valign="top">
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" height="100%" border="0" bgcolor="#bddff7">
<tr>
<td><img src="images/spacer.gif" height="2"></td>
</tr>
<tr>
<td><div id="ctl01_pnlCats">
<table width="155" cellspacing="3" cellpadding="0" border="0" border="0">
<tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=A">Hats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=B">Outerwear</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=C">T's & Sweats</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=D">Polo's & Dress Shirts</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=E">Bags</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr><tr>
<td class="leftNavCell" valign="middle"><img src="images/spacer.gif" width="20" height="1" /><a class="LeftNavBlue" href="default.aspx?action=cats&amp;cat=F">Miscellaneous</a></td>
</tr><tr>
<td class="spacerNavCell" height="1" bgcolor="#29719c"><img src="images/spacer.gif" /></td>
</tr>
</table>
</div></td>
</tr>
<tr>
<td vAlign="top" align="center">
<table width="96%" bgcolor="#ffffff" cellpadding="0" cellspacing="0" border="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c" height="20"><img src="images/spacer.gif" width="5">Cart
Snapshot:</td>
</tr>
<tr>
<td>
<table cellSpacing="0" cellPadding="0" width="100%" border="0">
<tr>
<td align="center">
<table cellSpacing="0" cellPadding="0" width="95%" border="0">
<tr>
<td height="1"><span id="ctl01_cart_lblEmptyMsg" class="cool8">Your cart is empty</span></td>
</tr>
<!-- Cart SubTotal -->
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td class="cool8" align="right" height="1">Sub Total:&nbsp;<span id="ctl01_cart_lblCartTotal" class="cool8">$0.00</span></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<!-- Cart Tax -->
<tr>
<td class="cool8" align="right" height="1">Tax*:&nbsp;<span id="ctl01_cart_lblTax" class="cool8">$0.00</span><br>
<font class="cool7">*If shipping to CT</font></td>
</tr>
<tr>
<td height="1">
<hr color="#dedfde" SIZE="1">
</td>
</tr>
<tr>
<td align="center">
<table cellPadding="0" width="90%" border="0">
<tr>
<td align="center"><a id="ctl01_cart_HypViewCart" class="headerNav" href="default.aspx?action=shoppingcart">View Cart</a></td>
<!-- <td class="cool8" width="5">|</td> -->
<td width="1"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td><img src="images/spacer.gif" height="4"></td>
</tr>
<tr>
<td height="1" align="center">
<table width="96%" cellpadding="2" border="0" cellspacing="0">
<tr>
<td class="cool8Ltblue" bgcolor="#29719c">Need Help?:</td>
</tr>
<tr>
<td align="center">
<table width="80%">
<tr>
<td><a href="default.aspx?action=sitemap" class="LeftNavBlue">Site Map</a></td>
</tr>
<tr>
<td><a href="default.aspx?action=service" class="LeftNavBlue">Customer Service</a></td>
</tr>
<tr>
<td><a href="default.aspx" class="LeftNavBlue">1-800-BARKERS</a></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="17"><img src="images/nav_bottom_curve.jpg"></td>
</tr>
<tr>
<td height="*" bgcolor="#ffffff"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td height="*"><img src="images/spacer.gif"></td>
</tr>
</table>
</td>

<td id="pageContentsCell" valign="top" width="580">
<table width="100%" height="100%" cellspacing="0" cellpadding="0" border="0">
<tr>
<td>
<table>
<TBODY>
<tr>
<td valign="top">
<!-- Welcome Message -->
<table width="95%">
<tr>
<td><img src="images/welcome.jpg"></td>
</tr>
<tr>
<td class="cool8blk">Here you will find quality products displaying the Soundings
logo proudly. Be sure to come back often, as new and exciting products will be
added. To begin shopping, select a product category from above. To browse by
product price, select a price category from the left.
</td>
</tr>
</table>
</td>
<td width="200">

<table cellSpacing="0" cellPadding="0" border="0">
<tr>
<td height="50"><IMG src="images/left_gray_curve.jpg"></td>
<td bgColor="#dedfde" height="50">
<table>
<tr>
<td><div id="ctl02_login_pnlNo">

<TABLE border="0">
<TR>
<TD class="cool8blk">Corporate Code:<BR>
<input name="ctl02$login$txtPassword" type="password" id="ctl02_login_txtPassword" class="txBox" style="width:85px;" />
</TD>
<TD vAlign="bottom" align="center" width="65">
<a id="ctl02_login_lbLogin" href="javascript:__doPostBack('ctl02$login$lbLogin','')">ENTER</a></TD>
</TR>
</TABLE>

</div></td>
</tr>
<tr>
<td></td>
</tr>
</table>
</td>
<td><IMG src="images/right_gray_curve.jpg"></td>
</tr>
</table>
</td>
</td>
</tr>
</table></TD></TR>
<tr>
<td valign="top" width="400">
<table width="100%" cellspacing="5" cellpadding="5" border="0">
<!-- Product Spotlight Display -->
<tr>
<td><img src="images/feat_prod.jpg"></td>
</tr>
&l..
IIS Version Disclosure

IIS Version Disclosure

1 TOTAL
INFORMATION
Netsparker identified that the target web server is disclosing the web server's version in the HTTP response. This information can help an attacker to gain a greater understanding of the system in use and potentially develop further attacks targeted at the specific web server version.

Impact

An attacker can look for specific security vulnerabilities for the version identified through the SERVER header information.

Remediation

Configure your web server to prevent information leakage from the SERVER header of its HTTP response.
- /

/

https://www.barkerstores.com/

Extracted Version

Microsoft-IIS/7.0

Request

GET / HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 302 Object moved
Cache-Control: private
Content-Length: 131
Content-Type: text/html
Location: index.html
Server: Microsoft-IIS/7.0
Set-Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; secure; path=/
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT


<head><title>Object moved</title></head><body><h1>Object Moved</h1>This object may be found <a HREF="index.html">here</a>.</body>
[Possible] Internal Path Leakage (Windows)

[Possible] Internal Path Leakage (Windows)

2 TOTAL
INFORMATION
Netsparker identified an internal path in the document.

Impact

There is no direct impact however this information can help an attacker either to identify other vulnerabilities or during the exploitation of other identified vulnerabilities.

Remedy

First ensure that this is not a false positive. Due to the nature of the issue. Netsparker could not confirm that this file path was actually the real file path of the target web server.

External References

- /soundings/

/soundings/

https://www.barkerstores.com/soundings/

Identified Internal Path(s)

Request

GET /soundings/ HTTP/1.1
Referer: https://www.barkerstores.com/soundings/default.aspx?action=pymt
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:11:31 GMT
Content-Length: 7065


<html>
<head>
<title>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Data.OleDb.OleDbException: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. &nbsp;Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[OleDbException (0x80004005): The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.]
System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr) +1006096
System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object&amp; executeResult) +255
System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object&amp; executeResult) +188
System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object&amp; executeResult) +58
System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method) +161
System.Data.OleDb.OleDbCommand.ExecuteNonQuery() +113
Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:174
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:98
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[OleDbException]: The changes you requested to the table were not successful because they would create duplicate values in the index, primary key, or relationship. Change the data in the field or fields that contain duplicate data, remove the index, or redefine the index to permit duplicate entries and try again.
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextErrorHandling(OleDbHResult hr)
at System.Data.OleDb.OleDbCommand.ExecuteCommandTextForSingleResult(tagDBPARAMS dbParams, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommandText(Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteCommand(CommandBehavior behavior, Object& executeResult)
at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)
at System.Data.OleDb.OleDbCommand.ExecuteNonQuery()
at Soundings.Customers.AddCustomer() in c:\inetpub\wwwroot\Soundings\ClassFiles\Customers.vb:line 174
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 98
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->
- /soundings/default.aspx

/soundings/default.aspx

https://www.barkerstores.com/soundings/default.aspx?action=%27;WAITFOR%20DELAY%20%270:0:25%27--

Identified Internal Path(s)

c:\inetpub\wwwroot\Soundings\Default.aspx.vb

Request

GET /soundings/default.aspx?action=%27;WAITFOR%20DELAY%20%270:0:25%27-- HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: www.barkerstores.com
Cookie: ASPSESSIONIDAUDTCBQA=OIBLIPKCPLLGMFGOENEDILFM; ASP.NET_SessionId=e0w2qz452dwoe3rh5o55vcfc; chk_support=check; SOU_CustID=SOU17608; SOU_CartID=SOU-16305067-5111
Accept-Encoding: gzip, deflate

Response

HTTP/1.1 500 Internal Server Error
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.0
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Sun, 01 May 2011 17:12:02 GMT
Content-Length: 4930


<html>
<head>
<title>'UserControls/';WAITFOR DELAY '0:0:25'--.ascx' is not a valid virtual path.</title>
<style>
body {font-family:"Verdana";font-weight:normal;font-size: .7em;color:black;}
p {font-family:"Verdana";font-weight:normal;color:black;margin-top: -5px}
b {font-family:"Verdana";font-weight:bold;color:black;margin-top: -5px}
H1 { font-family:"Verdana";font-weight:normal;font-size:18pt;color:red }
H2 { font-family:"Verdana";font-weight:normal;font-size:14pt;color:maroon }
pre {font-family:"Lucida Console";font-size: .9em}
.marker {font-weight: bold; color: black;text-decoration: none;}
.version {color: gray;}
.error {margin-bottom: 10px;}
.expandable { text-decoration:underline; font-weight:bold; color:navy; cursor:hand; }
</style>
</head>

<body bgcolor="white">

<span><H1>Server Error in '/Soundings' Application.<hr width=100% size=1 color=silver></H1>

<h2> <i>'UserControls/';WAITFOR DELAY '0:0:25'--.ascx' is not a valid virtual path.</i> </h2></span>

<font face="Arial, Helvetica, Geneva, SunSans-Regular, sans-serif ">

<b> Description: </b>An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

<br><br>

<b> Exception Details: </b>System.Web.HttpException: 'UserControls/';WAITFOR DELAY '0:0:25'--.ascx' is not a valid virtual path.<br><br>

<b>Source Error:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code>

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.</code>

</td>
</tr>
</table>

<br>

<b>Stack Trace:</b> <br><br>

<table width=100% bgcolor="#ffffcc">
<tr>
<td>
<code><pre>

[HttpException (0x80004005): 'UserControls/';WAITFOR DELAY '0:0:25'--.ascx' is not a valid virtual path.]
System.Web.VirtualPath.Create(String virtualPath, VirtualPathOptions options) +8862443
System.Web.UI.TemplateControl.LoadControl(String virtualPath) +17
Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:139
System.Web.UI.Control.OnLoad(EventArgs e) +99
System.Web.UI.Control.LoadRecursive() +50
System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) +627
</pre></code>

</td>
</tr>
</table>

<br>

<hr width=100% size=1 color=silver>

<b>Version Information:</b>&nbsp;Microsoft .NET Framework Version:2.0.50727.4211; ASP.NET Version:2.0.50727.4209

</font>

</body>
</html>
<!--
[HttpException]: 'UserControls/';WAITFOR DELAY '0:0:25'--.ascx' is not a valid virtual path.
at System.Web.VirtualPath.Create(String virtualPath, VirtualPathOptions options)
at System.Web.UI.TemplateControl.LoadControl(String virtualPath)
at Soundings._Default.Page_Load(Object sender, EventArgs e) in c:\inetpub\wwwroot\Soundings\Default.aspx.vb:line 139
at System.Web.UI.Control.OnLoad(EventArgs e)
at System.Web.UI.Control.LoadRecursive()
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
[HttpUnhandledException]: Exception of type 'System.Web.HttpUnhandledException' was thrown.
at System.Web.UI.Page.HandleError(Exception e)
at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
at System.Web.UI.Page.ProcessRequest()
at System.Web.UI.Page.ProcessRequestWithNoAssert(HttpContext context)
at System.Web.UI.Page.ProcessRequest(HttpContext context)
at ASP.default_aspx.ProcessRequest(HttpContext context)
at System.Web.HttpApplication.CallHandlerExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
--><!--
This error page might contain sensitive information because ASP.NET is configured to show verbose error messages using &lt;customErrors mode="Off"/&gt;. Consider using &lt;customErrors mode="On"/&gt; or &lt;customErrors mode="RemoteOnly"/&gt; in production environments.-->