SpiderLabs / owasp-modsecurity-crs

OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)
https://modsecurity.org/crs
Apache License 2.0
2.45k stars 726 forks source link

Blocking Object as get arguments gets blocked with Rule REQUEST-949-BLOCKING-EVALUATION.conf #1700

Open impondesk opened 4 years ago

impondesk commented 4 years ago

Description

Requests with object as parameter is getting blocked since of the Rule 949 as anomaly score is higher 5+ for the respective requests. As per definitions requests with score 4+ gets blocked.

Audit Logs / Triggered Rule Numbers

REQUEST-949-BLOCKING-EVALUATION.conf

Your Environment

After disabling the rule requests are working as expected, once we enable this blocks all requests with object as input request parameter; whereas string / other types works properly.

Kindly assist.