1. Cross-site scripting (reflected)
2. SSL cookie without secure flag set
2.1. https://www.bagsbuy.com/cart/enter_ordering_info
2.2. https://www.bagsbuy.com/cust/landing
3. Cookie without HttpOnly flag set
3.1. https://www.bagsbuy.com/cart/enter_ordering_info
3.2. https://www.bagsbuy.com/cust/landing
4. Password field with autocomplete enabled
5. Cross-domain script include
5.1. https://www.bagsbuy.com/cart/enter_ordering_info
5.2. https://www.bagsbuy.com/cust/landing
6.1. https://www.bagsbuy.com/cart/enter_ordering_info
6.2. https://www.bagsbuy.com/cust/landing
Severity: | High |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | /cart/enter_ordering_info |
GET /cart/enter_ordering_info Host: www.bagsbuy.com Connection: keep-alive Referer: https://www.bagsbuy.com Cache-Control: max-age=0 Origin: https://www.bagsbuy.com Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:41:06 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 24529 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Ch ...[SNIP]... <!-- var amPid = '384'; var amParams = 'checkout_type=171213';alert(1)/ var amHost = (("https:" == document.location document.write("<scr"+ ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.bagsbuy.com |
Path: | /cart/enter_ordering_info |
POST /cart/enter_ordering_info HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: https://www.bagsbuy.com Cache-Control: max-age=0 Origin: https://www.bagsbuy.com Content-Type: application/x-www-form Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp Content-Length: 59 checkout_type=1&submit |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:36:19 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 33036 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Ch ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.bagsbuy.com |
Path: | /cust/landing |
GET /cust/landing HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: http://www.bagsbuy.com Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:35:15 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: uid=CmW2a01VSSMAAC1aAy Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 8819 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Car ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.bagsbuy.com |
Path: | /cart/enter_ordering_info |
POST /cart/enter_ordering_info HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: https://www.bagsbuy.com Cache-Control: max-age=0 Origin: https://www.bagsbuy.com Content-Type: application/x-www-form Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp Content-Length: 59 checkout_type=1&submit |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:36:19 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 33036 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Ch ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.bagsbuy.com |
Path: | /cust/landing |
GET /cust/landing HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: http://www.bagsbuy.com Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:35:15 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: uid=CmW2a01VSSMAAC1aAy Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 8819 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Car ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | /cust/landing |
GET /cust/landing HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: http://www.bagsbuy.com Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:35:15 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: uid=CmW2a01VSSMAAC1aAy Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 8819 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Car ...[SNIP]... </p> <form method="post" action="/cart/enter <input type="hidden" name="preclass" value="Cust"> ...[SNIP]... <td><input class="textbox" type="password" id="Password" name="Password" class="textbox" size="35" maxlength="30" /></td> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | /cart/enter_ordering_info |
POST /cart/enter_ordering_info HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: https://www.bagsbuy.com Cache-Control: max-age=0 Origin: https://www.bagsbuy.com Content-Type: application/x-www-form Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp Content-Length: 59 checkout_type=1&submit |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:36:19 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 33036 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Ch ...[SNIP]... <!--/topnav --> <script type="text/javascript" src="//libs.coremetrics ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | /cust/landing |
GET /cust/landing HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: http://www.bagsbuy.com Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:35:15 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: uid=CmW2a01VSSMAAC1aAy Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 8819 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Car ...[SNIP]... <!--/topnav --> <script type="text/javascript" src="//libs.coremetrics ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | /cart/enter_ordering_info |
POST /cart/enter_ordering_info HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: https://www.bagsbuy.com Cache-Control: max-age=0 Origin: https://www.bagsbuy.com Content-Type: application/x-www-form Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp Content-Length: 59 checkout_type=1&submit |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:36:19 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 33036 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Ch ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | /cust/landing |
GET /cust/landing HTTP/1.1 Host: www.bagsbuy.com Connection: keep-alive Referer: http://www.bagsbuy.com Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sb2=AAAAgU1VR1MAAEdp |
HTTP/1.1 200 OK Date: Fri, 11 Feb 2011 14:35:15 GMT Server: Apache Edge-control: no-store, max-age=0, downstream-ttl=0 Content-Type: text/html Set-Cookie: uid=CmW2a01VSSMAAC1aAy Set-Cookie: Bagsbuy.com_sess Connection: close Content-Length: 8819 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html <title>Car ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.bagsbuy.com |
Path: | / |
Issued to: | www.bagsbuy.com |
Issued by: | VeriSign Class 3 Extended Validation SSL CA |
Valid from: | Tue Oct 20 19:00:00 CDT 2009 |
Valid to: | Wed Oct 19 18:59:59 CDT 2011 |
Issued to: | VeriSign Class 3 Extended Validation SSL CA |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Mon Nov 07 17:59:59 CST 2016 |
Issued to: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Sun Nov 07 17:59:59 CST 2021 |
Issued to: | Class 3 Public Primary Certification Authority |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Sun Jan 28 18:00:00 CST 1996 |
Valid to: | Wed Aug 02 18:59:59 CDT 2028 |