Hi,
is anybody having problems with some defaults ruleset (especially 1234123404 and 1234123440) and wordpress?
Actually all Wordpress installation on my server can no more update a post.
Looking in log I've found stuff like this:
Is anybody facing the same situation?
Thanks
Cotus
is anybody having problems with some defaults ruleset (especially 1234123404 and 1234123440) and wordpress?
Actually all Wordpress installation on my server can no more update a post.
Looking in log I've found stuff like this:
Of course disabling rule 1234123404 it's possible to update a post.[Sun Mar 31 16:39:02 2013] [error] [client xxx.xxx.xxx.xxx] ModSecurity: Access denied with code 406 (phase 2). Pattern match "(?:\\\\b(??:type\\\\b\\\\W*?\\\\b(?:text\\\\b\\\\W*?\\\\b(?:j(?:ava)?|ecma|vb)|application\\\\b\\\\W*?\\\\bx-(?:java|vb))script|c(?
pyparentfolder|reatetextrange)|get(?:special|parent)folder|iframe\\\\b.{0,100}?\\\\bsrc)\\\\b|on(?
?:mo(?:use(?
(?:ver|ut)|down|move|up)|ve)| ..." at ARGS:content. [file "/usr/local/apache/conf/modsec2.user.conf"] [line "117"] [id "1234123404"] [msg "Cross-site Scripting (XSS) Attack"] [data "src=\\x22http:"] [severity "CRITICAL"] [tag "WEB_ATTACK/XSS"] [hostname "www.domainname.ext"] [uri "/wp-admin/post.php"]
Is anybody facing the same situation?
Thanks
Cotus