1. Cross-site scripting (reflected)
Severity: | High |
Confidence: | Certain |
Host: | https://book1.carrental |
Path: | /dcweb/app |
GET /dcweb/app?service=page Host: book1.carrental.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Sun-ONE-Web-Server/6.1 Content-Type: text/html;charset=UTF-8 Cache-Control: no-cache="set-cookie" X-Powered-By: Servlet/2.4 JSP/2.0 Date: Mon, 08 Nov 2010 00:56:44 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: datacenter=boulder; path=/ Set-Cookie: JSESSIONID=X7sQMXKN8 Set-Cookie: pid=IRcomBU Set-Cookie: abgdcweblocale=en Set-Cookie: abgdcweblocale=enb4f2e" Set-Cookie: abgdcweblocale=enb4f2e" Set-Cookie: org.apache.tapestry Set-Cookie: pid=IRcomBU Set-Cookie: abgdcweblocale=enb4f2e" Set-Cookie: abgdcweblocale=enb4f2e" Content-Length: 114260 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Budget Reservat ...[SNIP]... eturn pair[1]; } } } var s_eVar49 = getQueryVariable("ICID"); var s_channel="Reservation" var s_account="ccrgirbudget"; //var s_campaign="IRcomBU"; var m_iCurrentYear = 2010; var s_prop44 = "enb4f2e";alert(1)/ var s_evar10 = "CA"; var s_eVar43="IRcomBU"; var m_debug = !true; //var m_version = 6.9o; // Omniture page load var s_server="babcrap001"; // Return date/time in format MMddyyyy:HHmm:am function ...[SNIP]... |