質問編集履歴

1

追記

2021/03/10 08:16

投稿

qwe001
qwe001

スコア133

test CHANGED
File without changes
test CHANGED
@@ -51,3 +51,303 @@
51
51
 
52
52
 
53
53
  ご回答お待ちしております。
54
+
55
+
56
+
57
+ Apacheのバージョンは2.4.46 最新版です
58
+
59
+
60
+
61
+ Burp Suiteのレスポンス内容を掲載します
62
+
63
+
64
+
65
+ ```
66
+
67
+ Summary
68
+
69
+ Severity: High
70
+
71
+ Confidence: Firm
72
+
73
+ Host: https://***.com
74
+
75
+ Path: /contact/
76
+
77
+ Request 1
78
+
79
+ POST /contact/?1FhZ=1515077263 HTTP/1.1
80
+
81
+ Host: ***.com
82
+
83
+ Cookie: csrf_cookie_name=7921977d08d544074d45d429fdfb9958; ci_session=g6j4id1s7nv740il3cnrh7sqj5oq8gfe; _ga=GA1.2.2126658472.1615355983; _gid=GA1.2.901875414.1615355983; _gat_gtag_UA_39713116_1=1
84
+
85
+ Upgrade-Insecure-Requests: 1
86
+
87
+ Referer: https://***.com/
88
+
89
+ Accept: */*
90
+
91
+ Accept-Language: en-US,en-GB;q=0.9,en;q=0.8
92
+
93
+ User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36
94
+
95
+ Cache-Control: max-age=0
96
+
97
+ Accept-Encoding: gzip, deflate
98
+
99
+ Content-Type: application/x-www-form-urlencoded
100
+
101
+ Transfer-Encoding: chunked
102
+
103
+ Content-Length: 31
104
+
105
+ Connection: keep-alive
106
+
107
+
108
+
109
+ f
110
+
111
+ 49vb0=x&fyxe8=x
112
+
113
+ 1
114
+
115
+ Z
116
+
117
+ Q
118
+
119
+
120
+
121
+ Response 1
122
+
123
+ HTTP/1.1 302 Found
124
+
125
+ Content-Type: text/html; charset=UTF-8
126
+
127
+ Connection: close
128
+
129
+ Date: Wed, 10 Mar 2021 06:28:07 GMT
130
+
131
+ Server: Apache
132
+
133
+ Set-Cookie: csrf_cookie_name=7921977d08d544074d45d429fdfb9958; expires=Wed, 10-Mar-2021 08:28:06 GMT; Max-Age=7200; path=/; HttpOnly
134
+
135
+ Location: https://***.com/contact/?1FhZ=1515077263
136
+
137
+ Expires: Thu, 19 Nov 1981 08:52:00 GMT
138
+
139
+ Cache-Control: no-store, no-cache, must-revalidate
140
+
141
+ Pragma: no-cache
142
+
143
+ X-Frame-Options: SAMEORIGIN
144
+
145
+ X-XSS-Protection: 1; mode=block
146
+
147
+ X-Content-Type-Options: nosniff
148
+
149
+ X-Cache: Miss from cloudfront
150
+
151
+ Via: 1.1 ***.cloudfront.net (CloudFront)
152
+
153
+ X-Amz-Cf-Pop: NRT51-C1
154
+
155
+ X-Amz-Cf-Id: 1hLHP2aK3qg3GkLxrp0d-Wq1n8EKdfF1kl0qI4fmRof_TywjPbQzCA==
156
+
157
+ Content-Length: 15387
158
+
159
+
160
+
161
+ <!DOCTYPE HTML>
162
+
163
+ <html lang="ja">
164
+
165
+
166
+
167
+ <head>
168
+
169
+ <meta charset="utf-8">
170
+
171
+ <meta name="viewport" content="width=device-width, initial-scale=1.0, minimum-scale=1.0, user-scalable=no, maximum-scale=1.0">
172
+
173
+ <me
174
+
175
+ ...[SNIP]...
176
+
177
+ Request 2
178
+
179
+ POST /contact/?GufP=341181186 HTTP/1.1
180
+
181
+ Host: ***.com
182
+
183
+ Cookie: csrf_cookie_name=7921977d08d544074d45d429fdfb9958; ci_session=g6j4id1s7nv740il3cnrh7sqj5oq8gfe; _ga=GA1.2.2126658472.1615355983; _gid=GA1.2.901875414.1615355983; _gat_gtag_UA_39713116_1=1
184
+
185
+ Upgrade-Insecure-Requests: 1
186
+
187
+ Referer: https://***.com/
188
+
189
+ Accept: */*
190
+
191
+ Accept-Language: en-US,en-GB;q=0.9,en;q=0.8
192
+
193
+ User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36
194
+
195
+ Cache-Control: max-age=0
196
+
197
+ Accept-Encoding: gzip, deflate
198
+
199
+ Content-Type: application/x-www-form-urlencoded
200
+
201
+ Transfer-Encoding: chunked
202
+
203
+ Content-Length: 92
204
+
205
+ Connection: keep-alive
206
+
207
+
208
+
209
+ f
210
+
211
+ ev4x4=x&9ms6a=x
212
+
213
+ 0
214
+
215
+
216
+
217
+ GET /ik64qiml4zxupxw7fi2ldrmn4ea7yy3mwqkg76vv HTTP/1.1
218
+
219
+ X-Ignore: X
220
+
221
+ Response 2
222
+
223
+ HTTP/1.1 302 Found
224
+
225
+ Content-Type: text/html; charset=UTF-8
226
+
227
+ Connection: close
228
+
229
+ Date: Wed, 10 Mar 2021 06:28:25 GMT
230
+
231
+ Server: Apache
232
+
233
+ Set-Cookie: csrf_cookie_name=7921977d08d544074d45d429fdfb9958; expires=Wed, 10-Mar-2021 08:28:25 GMT; Max-Age=7200; path=/; HttpOnly
234
+
235
+ Location: https://***.com/contact/?GufP=341181186
236
+
237
+ Expires: Thu, 19 Nov 1981 08:52:00 GMT
238
+
239
+ Cache-Control: no-store, no-cache, must-revalidate
240
+
241
+ Pragma: no-cache
242
+
243
+ X-Frame-Options: SAMEORIGIN
244
+
245
+ X-XSS-Protection: 1; mode=block
246
+
247
+ X-Content-Type-Options: nosniff
248
+
249
+ X-Cache: Miss from cloudfront
250
+
251
+ Via: 1.1 ***.cloudfront.net (CloudFront)
252
+
253
+ X-Amz-Cf-Pop: NRT51-C1
254
+
255
+ X-Amz-Cf-Id: 4dYYH9LSKzWegGYiF-EN3v1vcQe8hHnyBz5rtHvjeBNZwv91N65Pvg==
256
+
257
+ Content-Length: 15387
258
+
259
+
260
+
261
+ <!DOCTYPE HTML>
262
+
263
+ <html lang="ja">
264
+
265
+
266
+
267
+ <head>
268
+
269
+ <meta charset="utf-8">
270
+
271
+ <meta name="viewport" content="width=device-width, initial-scale=1.0, minimum-scale=1.0, user-scalable=no, maximum-scale=1.0">
272
+
273
+ <me
274
+
275
+ ...[SNIP]...
276
+
277
+ Request 3
278
+
279
+ POST /contact/?1FhZ=1515077263 HTTP/1.1
280
+
281
+ Host: ***.com
282
+
283
+ Cookie: csrf_cookie_name=7921977d08d544074d45d429fdfb9958; ci_session=g6j4id1s7nv740il3cnrh7sqj5oq8gfe; _ga=GA1.2.2126658472.1615355983; _gid=GA1.2.901875414.1615355983; _gat_gtag_UA_39713116_1=1
284
+
285
+ Upgrade-Insecure-Requests: 1
286
+
287
+ Referer: https://***.com/
288
+
289
+ Accept: */*
290
+
291
+ Accept-Language: en-US,en-GB;q=0.9,en;q=0.8
292
+
293
+ User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36
294
+
295
+ Cache-Control: max-age=0
296
+
297
+ Accept-Encoding: gzip, deflate
298
+
299
+ Content-Type: application/x-www-form-urlencoded
300
+
301
+ Transfer-Encoding: chunked
302
+
303
+ Content-Length: 31
304
+
305
+ Connection: keep-alive
306
+
307
+
308
+
309
+ f
310
+
311
+ 49vb0=x&fyxe8=x
312
+
313
+ 1
314
+
315
+ Z
316
+
317
+ Q
318
+
319
+
320
+
321
+ Response 3
322
+
323
+ HTTP/1.1 504 Gateway Time-out
324
+
325
+ Content-Type: text/html
326
+
327
+ Content-Length: 1033
328
+
329
+ Connection: close
330
+
331
+ Server: CloudFront
332
+
333
+ Date: Wed, 10 Mar 2021 06:28:55 GMT
334
+
335
+ X-Cache: Error from cloudfront
336
+
337
+ Via: 1.1 ***.cloudfront.net (CloudFront)
338
+
339
+ X-Amz-Cf-Pop: NRT51-C1
340
+
341
+ X-Amz-Cf-Id: oybcbqhcYo6R3BvLlqWFnN_Xur_7714qhIErSVuItd0rVUBNs9IIaQ==
342
+
343
+
344
+
345
+ <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
346
+
347
+ <HTML><HEAD><META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
348
+
349
+ <TITLE>ERROR
350
+
351
+ ...[SNIP]...
352
+
353
+ ```