1. Cross-site scripting (reflected)
2. SSL cookie without secure flag set
3. Cookie without HttpOnly flag set
4. HTML does not specify charset
Severity: | High |
Confidence: | Certain |
Host: | https://reseller.apple |
Path: | /asb2b/init.do |
GET /asb2b/init.do?dscountry Host: reseller.apple.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK connection: close server: SAP J2EE Engine/7.00 content-type: text/html; charset=UTF-8 pragma: No-cache cache-control: no-cache expires: Thu, 01 Jan 1970 00:00:00 GMT date: Wed, 28 Sep 2011 14:16:02 GMT set-cookie: TLTSID=2F65172CB998A set-cookie: TLTUID=885A0D00AA17E set-cookie: _dscountry=au4360d';alert set-cookie: _lang=en; Domain=reseller.apple.com <html> <head> <script type="text/javascript"> var loginurl = 'https://daw.apple.com function dslogin() { location.replace(loginurl } </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://reseller.apple |
Path: | /asb2b/init.do |
GET /asb2b/init.do HTTP/1.1 Host: reseller.apple.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK connection: close server: SAP J2EE Engine/7.00 content-type: text/html; charset=UTF-8 pragma: No-cache cache-control: no-cache expires: Thu, 01 Jan 1970 00:00:00 GMT date: Wed, 28 Sep 2011 14:16:00 GMT set-cookie: TLTSID=2F65172CB998A set-cookie: TLTUID=885A0D00AA17E set-cookie: _lang=en; Domain=reseller.apple.com <html> <head> <script type="text/javascript"> var loginurl = 'https://daw.apple.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://reseller.apple |
Path: | /asb2b/init.do |
GET /asb2b/init.do HTTP/1.1 Host: reseller.apple.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK connection: close server: SAP J2EE Engine/7.00 content-type: text/html; charset=UTF-8 pragma: No-cache cache-control: no-cache expires: Thu, 01 Jan 1970 00:00:00 GMT date: Wed, 28 Sep 2011 14:16:00 GMT set-cookie: TLTSID=2F65172CB998A set-cookie: TLTUID=885A0D00AA17E set-cookie: _lang=en; Domain=reseller.apple.com <html> <head> <script type="text/javascript"> var loginurl = 'https://daw.apple.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://reseller.apple |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: reseller.apple.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/14.0.835.186 Safari/535.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|272F67E8 |
HTTP/1.0 403 Forbidden date: Wed, 28 Sep 2011 14:19:15 GMT pragma: no-cache connection: close content-length: 982 content-type: text/html server: SAP NetWeaver Application Server 7.10 / ICM 7.10 <html><head><title <style type="text/css"> body { font-family: arial, sans-serif;} </style> </head> <BODY><table width=800> <tr><td width=50 nowrap> </td><td> ...[SNIP]... |