1. Cross-site scripting (reflected)
1.1. http://www.bankofamerica.com/search/ [name of an arbitrarily supplied request parameter]
1.2. https://www.bankofamerica.com/Control.do [BOFA_LOCALE_COOKIE cookie]
1.3. https://www.bankofamerica.com/d618d [state cookie]
1.4. http://www.bankofamerica.com/xlink-in.cgi [Referer HTTP header]
Severity: | High |
Confidence: | Certain |
Host: | http://www.bankofamerica |
Path: | /search/ |
POST /search/ HTTP/1.1 Host: www.bankofamerica.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20120524 Firefox/8.0 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Proxy-Connection: keep-alive Cookie: INTL_LANG=en_US; TLTSID=B9472E6EDF421 Content-Type: application/x-www-form Content-Length: 71 ui_mode=question&question |
HTTP/1.1 500 Internal Server Error Server: Sun-ONE-Web-Server/6.1 Date: Sun, 05 Aug 2012 21:46:09 GMT Content-type: text/html P3P: CP="CAO IND PHY ONL UNI FIN COM NAV INT DEM CNT STA POL HEA PRE GOV CUR ADM DEV TAI PSA PSD IVAi IVDi CONo TELo OUR SAMi OTRi" Page-Completion-Status: Abnormal Content-Length: 2098 ...[SNIP]... <XMP> 91040</XMP><SCRIPT>ALERT </XMP> ...[SNIP]... |
Severity: | Medium |
Confidence: | Certain |
Host: | https://www.bankofamerica |
Path: | /Control.do |
GET /Control.do?body=overview HTTP/1.1 Host: www.bankofamerica.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20120524 Firefox/8.0 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Connection: keep-alive Referer: https://sitekey Cookie: TLTUID=B9472E6EDF421 |
HTTP/1.1 200 OK Date: Sun, 05 Aug 2012 23:28:12 GMT Server: IBM_HTTP_Server X-FRAME-OPTIONS: DENY Cache-Control: no-cache Set-Cookie: js_pbi=0000vAB7NGq00emyEn Set-Cookie: state=DE; Expires=Fri, 01 Feb 2013 23:28:12 GMT; Path=/; Domain=.bankofamerica.com Set-Cookie: CONTEXT=en_US; Path=/; Domain=.bankofamerica.com Set-Cookie: INTL_LANG=en_US; Path=/; Domain=.bankofamerica.com Set-Cookie: LANG_COOKIE=en_US; Path=/; Domain=.bankofamerica.com Set-Cookie: hp_pf_anon=anon=((ct=+| Set-Cookie: BOA_0020=20120805:0:O Expires: Thu, 01 Dec 1994 16:00:00 GMT Via: On-Demand Router/1.0 Vary: Accept-Encoding Keep-Alive: timeout=5, max=424 Connection: Keep-Alive Content-Type: text/html;charset=ISO Content-Language: en-US Set-Cookie: WA=1726259115.537.0000 Content-Length: 53644 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR ...[SNIP]... <script type="text/javascript"> var AdTrackingAction = ""; boaMboxCreate("BOA_HOME ...[SNIP]... |
Severity: | Medium |
Confidence: | Certain |
Host: | https://www.bankofamerica |
Path: | /d618d |
GET /d618d HTTP/1.1 Host: www.bankofamerica.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20120524 Firefox/8.0 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Connection: keep-alive Cookie: TLTUID=B9472E6EDF421 |
HTTP/1.1 404 Not found Server: Sun-ONE-Web-Server/6.1 Date: Sun, 05 Aug 2012 22:06:52 GMT Set-Cookie: TLTSID=B9472E6EDF421 Set-Cookie: TLTUID=B9472E6EDF421 P3p: CP="CAO IND PHY ONL UNI FIN COM NAV INT DEM CNT STA POL HEA PRE GOV CUR ADM DEV TAI PSA PSD IVAi IVDi CONo TELo OUR SAMi OTRi" Content-Length: 11842 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html lang="en"> <head> <meta http-equiv="content-type" content="text/html; charset=iso-8859-1"> <meta name="Description" content="Plea ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.bankofamerica |
Path: | /xlink-in.cgi |
GET /xlink-in.cgi?state=DE Host: www.bankofamerica.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20120524 Firefox/8.0 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Proxy-Connection: keep-alive Referer: http://www.google.com Cookie: TLTUID=B9472E6EDF421 |
HTTP/1.1 200 OK Server: Sun-ONE-Web-Server/6.1 Date: Mon, 06 Aug 2012 12:49:02 GMT Content-type: text/html X-FRAME-OPTIONS: SAMEORIGIN P3P: CP="CAO IND PHY ONL UNI FIN COM NAV INT DEM CNT STA POL HEA PRE GOV CUR ADM DEV TAI PSA PSD IVAi IVDi CONo TELo OUR SAMi OTRi" Set-Cookie: state=DE; expires=Mon, 01-Jan-1900 01:01:01 GMT; path=/ Set-Cookie: STATE=DE; expires=Mon, 01-Jan-1900 01:01:01 GMT; path=/ Set-Cookie: STATE=DE; expires=Mon, 01-Jan-1900 01:01:01 GMT; path=/; domain=bankofamerica.com Set-Cookie: state=DE; expires=Fri, 01-Jan-3999 01:01:01 GMT; path=/; domain=bankofamerica.com Page-Completion-Status: Normal Page-Completion-Status: Normal Set-Cookie: BOA_ADVISOR=OLB%3A2; expires=Sun, 27-Sep-2037 00:00:00 GMT; path=/; domain=.bankofamerica.com Set-Cookie: CONTEXT=en; expires=Sun, 27-Sep-2037 00:00:00 GMT; path=/; domain=.bankofamerica.com Content-Length: 65177 ...[SNIP]... <!-- referercf is available--> referer_value="http://www cmCreateRegistrationTag function pageview_tag(product,tag ...[SNIP]... |