1. Cross-site scripting (reflected)
4. Cross-domain Referer leakage
4.1. http://www.bestbuy.com/site/HTC+-+Trophy+Mobile+Phone+-+Black+(Verizon+Wireless)/2330093.p
4.2. http://www.bestbuy.com/site/olstemplatemapper.jsp
5. Cross-domain script include
Severity: | High |
Confidence: | Certain |
Host: | http://www.bestbuy.com |
Path: | /site/olstemplatemapper |
POST /site/olstemplatemapper Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.bestbuy.com Cookie: TLTSID=84D0DE5AB13D1 Content-Type: application/x-www-form Content-Length: 777 _dyncharset=ISO-8859-1& ...[SNIP]... |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:58:29 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:58:29 GMT Content-Length: 1398 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OD --> <!-- B:185 --> <script> var popupUrl='/site </script> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.bestbuy.com |
Path: | /site/olspage.jsp |
GET /site/olspage.jsp Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.bestbuy.com Cookie: TLTSID=84D0DE5AB13D1 |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:57:58 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:57:58 GMT Content-Length: 4044 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OD --> <!-- B:185 --> <script type="text/javascript" language="javascript"> document.doma ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.bestbuy.com |
Path: | /site/olstemplatemapper |
POST /site/olstemplatemapper Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.bestbuy.com Cookie: TLTSID=84D0DE5AB13D1 Content-Type: application/x-www-form Content-Length: 777 _dyncharset=ISO-8859-1& ...[SNIP]... |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:58:14 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:58:14 GMT Content-Length: 5716 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OD --> <!-- B:185 --> <script type="text/javascript" language="javascript"> document.doma ...[SNIP]... <div id="DeviceAdded" class="LBcontainer"> <form action="/site/olstem <li class="LBdesc"> <table> <tr> <th class="productImage"></th <th class="productDescription <th class="price"></th> </tr> <tr> <input value="" type="hidden" name="addDeviceToPackage" <img src="http://images <td class="productDescription hardGood"> HTC - Trophy Mobile Phone - B ...[SNIP]... |
POST /site/olstemplatemapper Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: TLTSID=84D0DE5AB13D1 Content-Type: application/x-www-form Content-Length: 777 _dyncharset=ISO-8859-1& ...[SNIP]... |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:58:28 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:58:28 GMT Content-Length: 1702 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OD --> <!-- B:185 --> <script type="text/javascript" language="javascript"> document.doma ...[SNIP]... <script> location.href='/site </script> <!-- E:189 --> <!-- E:188 --> <script language="javascript" type="text/javascript"> </script> <script language="javascript" type="text/javascript"> track.catId ='pcat17408';track </script> <!-- E:185 --> <!-- E:0OD --> <!-- B:0VW --> <!-- E:0VW --> </body> </html> <!-- E:226 --> |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bestbuy.com |
Path: | /site/HTC+-+Trophy+Mobile |
GET /site/HTC+-+Trophy+Mobile Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://mobile.microsoft |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:58:52 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:58:52 GMT Content-Length: 103169 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OE --> <!-- B:0ZX --> <!-- B:0ZV --> <html lang="en-US" xmlns:og="http://ogp.me ...[SNIP]... <h4><a data-lid="hdr_rwd" href="http://www.myrz.com ...[SNIP]... <h4><a data-lid="hdr_wky" href="http://bestbuy ...[SNIP]... <li><a data-lid="ubr_tvv_rsc_tmf ...[SNIP]... <li><a data-lid="ubr_mob_rsc_muc ...[SNIP]... <li><a data-lid="ubr_mob_rsc_mrc ...[SNIP]... <li><a data-lid="ubr_cam_rsc_mfi ...[SNIP]... <li><a data-lid="ubr_com_rsc_mfi ...[SNIP]... <h4 class="nav-hdr"><a data-lid="ubr_svc_pst" href="http://bestbuy ...[SNIP]... <p><a href="http://simulator ...[SNIP]... <li><a href="http://bestbuy ...[SNIP]... <li><a href="http://www.myrz.com ...[SNIP]... <li><a href="http://www.bby.com" onclick="return popNew(this, 'kiosk');" title="Link will open new window" target="_blank" data-lid="ft_abb">About Best Buy</a> ...[SNIP]... <li><a href="http://www.bby.com" onclick="return popNew(this, 'kiosk');" title="Link will open new window" target="_blank" data-lid="ft_ntb">News – The BBY</a> ...[SNIP]... <li><a href="http://www.bestbuy ...[SNIP]... <li><a href="http://phx ...[SNIP]... <li><a href="http://www.bby.com ...[SNIP]... <li><a href="http://www.bestbuy ...[SNIP]... <li><a href="http://www.bestbuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a class="ftr-twt" href="http://twitter.com ...[SNIP]... <li><a class="ftr-fbk" href="http://www.facebook ...[SNIP]... <li><a class="ftr-idx" href="http://bestbuyideax ...[SNIP]... <div id="ftr-lgo"> <a href="http://privacy <a href="http://privacy <a href="https://secure ...[SNIP]... <!-- PDH --> <script type="text/javascript" src="http://apis.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bestbuy.com |
Path: | /site/olstemplatemapper |
GET /site/olstemplatemapper Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.bestbuy.com Cookie: TLTSID=84D0DE5AB13D1 |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:59:10 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:59:10 GMT Content-Length: 103215 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OD --> <!--B:0WP--> <!-- B:143 --> <html xmlns="http://www.w3.org ...[SNIP]... <h4><a data-lid="hdr_rwd" href="http://www.myrz.com ...[SNIP]... <h4><a data-lid="hdr_wky" href="http://bestbuy ...[SNIP]... <li><a data-lid="ubr_tvv_rsc_tmf ...[SNIP]... <li><a data-lid="ubr_mob_rsc_muc ...[SNIP]... <li><a data-lid="ubr_mob_rsc_mrc ...[SNIP]... <li><a data-lid="ubr_cam_rsc_mfi ...[SNIP]... <li><a data-lid="ubr_com_rsc_mfi ...[SNIP]... <h4 class="nav-hdr"><a data-lid="ubr_svc_pst" href="http://bestbuy ...[SNIP]... <li><a href="http://bestbuy ...[SNIP]... <li><a href="http://www.myrz.com ...[SNIP]... <li><a href="http://www.bby.com" onclick="return popNew(this, 'kiosk');" title="Link will open new window" target="_blank" data-lid="ft_abb">About Best Buy</a> ...[SNIP]... <li><a href="http://www.bby.com" onclick="return popNew(this, 'kiosk');" title="Link will open new window" target="_blank" data-lid="ft_ntb">News – The BBY</a> ...[SNIP]... <li><a href="http://www.bestbuy ...[SNIP]... <li><a href="http://phx ...[SNIP]... <li><a href="http://www.bby.com ...[SNIP]... <li><a href="http://www.bestbuy ...[SNIP]... <li><a href="http://www.bestbuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a class="ftr-twt" href="http://twitter.com ...[SNIP]... <li><a class="ftr-fbk" href="http://www.facebook ...[SNIP]... <li><a class="ftr-idx" href="http://bestbuyideax ...[SNIP]... <div id="ftr-lgo"> <a href="http://privacy <a href="http://privacy <a href="https://secure ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bestbuy.com |
Path: | /site/HTC+-+Trophy+Mobile |
GET /site/HTC+-+Trophy+Mobile Host: www.bestbuy.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://mobile.microsoft |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO X-Powered-By: Vary: Accept-Encoding Expires: Mon, 18 Jul 2011 12:58:52 GMT Pragma: no-cache Date: Mon, 18 Jul 2011 12:58:52 GMT Content-Length: 103169 Connection: close Cache-Control: no-store <!DOCTYPE html> <!-- B:226 --> <!-- B:005 --> <!-- bbolsp-app05/dlpolsapp28 <!-- E:005 --> <!-- B:0OE --> <!-- B:0ZX --> <!-- B:0ZV --> <html lang="en-US" xmlns:og="http://ogp.me ...[SNIP]... <!-- PDH --> <script type="text/javascript" src="http://apis.google ...[SNIP]... |