1. Cross-site scripting (reflected)
2. Cross-domain Referer leakage
3. Cross-domain script include
3.2. http://www.deandeluca.com/coffee-tea-cocoa/tea-coffee-ns/favicon3.ico
4. Cookie without HttpOnly flag set
Severity: | High |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.deandeluca.com Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:42:31 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Set-Cookie: ASP.NET_SessionId Set-Cookie: ecm=user_id=0&isMemb Vary: Accept-Encoding Content-Length: 138815 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... </script>&906c2<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.deandeluca.com Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:40:10 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Set-Cookie: ASP.NET_SessionId Set-Cookie: ecm=user_id=0&isMemb Vary: Accept-Encoding Content-Length: 138790 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... </script>1220a<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.deandeluca.com Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:40:08 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Set-Cookie: ecm=user_id=0&isMemb Set-Cookie: ASP.NET_SessionId Vary: Accept-Encoding Content-Length: 138444 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... eluca_productpage_rec", ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.deandeluca.com Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:39:36 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Set-Cookie: ASP.NET_SessionId Set-Cookie: ecm=user_id=0&isMemb Vary: Accept-Encoding Content-Length: 138527 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... </base><link rel="alternate" type="application/rss+xml <script type="text/javascript" src="/Scripts/mbox.js"> ...[SNIP]... </script> <script type="text/javascript" src="http://ajax ...[SNIP]... <link type="text/css" media="screen" rel="stylesheet" href="/Styles/colorbox <script type="text/javascript" src="https://ajax ...[SNIP]... <div style="float: left;"> <a class="bread_crumb onClick="window.open( Live Chat</a> ...[SNIP]... </script> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... <td> <a href="http://tbe.taleo target="_blank" rel="noFollow"> ...[SNIP]... <map name="Map"><area shape="rect" coords="1,27,160,68" href="http://www.facebook <area shape="rect" coords="164,27,318,69" href="http://twitter.com <area shape="rect" coords="163,72,318,111" href="http://thegour <area shape="rect" coords="1,114,159,149" href="http://www.facebook </map> ...[SNIP]... </script> <script type="text/javascript" src="https://www </script> ...[SNIP]... <div style="display:inline;"> <img height="1" width="1" style="border-style:none; </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.deandeluca.com Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:39:36 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Set-Cookie: ASP.NET_SessionId Set-Cookie: ecm=user_id=0&isMemb Vary: Accept-Encoding Content-Length: 138527 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... </script> <script type="text/javascript" src="http://ajax ...[SNIP]... <link type="text/css" media="screen" rel="stylesheet" href="/Styles/colorbox <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... </script> <script type="text/javascript" src="https://www </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Host: www.deandeluca.com Proxy-Connection: Keep-Alive Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:41:46 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Vary: Accept-Encoding Content-Length: 87310 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... </script> <script type="text/javascript" src="https://www </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /coffee-tea-cocoa/tea |
GET /coffee-tea-cocoa/tea Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.deandeluca.com Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 04 Oct 2010 17:39:36 GMT Content-Type: text/html; charset=utf-8 ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET X-AspNet-Version: 4.0.30319 Set-Cookie: ASP.NET_SessionId Set-Cookie: ecm=user_id=0&isMemb Vary: Accept-Encoding Content-Length: 138527 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR <html xmlns="https://www.w3.org <head id="Head1"><title> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /Scripts/jquery.colorbox |
GET /Scripts/jquery.colorbox Accept: */* Referer: http://www.deandeluca.com Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.2; WOW64; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729) Accept-Encoding: gzip, deflate Host: www.deandeluca.com Proxy-Connection: Keep-Alive Cookie: mbox=check#true |
HTTP/1.1 200 OK Cache-Control: max-age=31536000 Content-Type: application/x-javascript Last-Modified: Fri, 01 Oct 2010 21:18:38 GMT Accept-Ranges: bytes ETag: " " Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET Date: Mon, 04 Oct 2010 17:41:36 GMT Content-Length: 20136 /*! ColorBox v1.3.1 - a full featured, light-weight, customizable lightbox based on jQuery 1.3 */ // (c) 2009 Jack Moore - www.colorpowered.com - jack@colorpowered.com // Licensed under the MIT license: http://www.opensource.org (function ($) { //Shortcuts (to increase compression) var colorbox = 'colorbox', hover = 'hover', TRUE ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.deandeluca.com |
Path: | /workarea/csslib |
GET /robots.txt HTTP/1.0 Host: www.deandeluca.com |
HTTP/1.1 200 OK Cache-Control: max-age=31536000 Content-Length: 571 Content-Type: text/plain Last-Modified: Fri, 10 Sep 2010 16:32:35 GMT Accept-Ranges: bytes ETag: " " Server: Microsoft-IIS/6.0 X-UA-Compatible: IE=EmulateIE7 X-Powered-By: ASP.NET Date: Mon, 04 Oct 2010 17:39:36 GMT Connection: close User-agent: * Disallow: /checklist.html Disallow: /backoffice/ Disallow: /Aboutus/Default.aspx?id Disallow: /Aboutus/Default.aspx?id Disallow: /Aboutus/Default.aspx?id Disallow: / ...[SNIP]... |