Difference between revisions of "WAF 350147"

From Atomicorp Wiki
Jump to: navigation, search
(Created page with "{{Infobox |header1= Rule 350147 |label2 = Status |data2 = Active |label3 = Alert Message |data3 = Atomicorp.com WAF Rules: Potentially Untrusted Web Content Detected }} = Des...")
 
m (Similar Rules)
Line 26: Line 26:
 
== Similar Rules ==
 
== Similar Rules ==
  
[[WAF 350148]]
+
[[WAF_350148]]
  
 
== Knowledge Base Articles==  
 
== Knowledge Base Articles==  

Revision as of 14:42, 3 January 2013

Rule 350147
Status Active
Alert Message Atomicorp.com WAF Rules: Potentially Untrusted Web Content Detected

Contents

Description

This rules detects when potentially untrusted web content is used in a client request. For example, if javascript is included in a variable that appears to not be used for this purpose, or if web code is included in a portion of a request that is not known to be used for this purpose.


Troubleshooting

False Positives

This rule may produce a false positive if an application is used in a previously unknown or untested manner. The rules contain a large library of known trusted methods, however it is possible an application may be using a previously untested method. It is not recommended that you disable this rule if you have a false positive. If you believe this is a false positive, please report this to our security team to determine if this is a legitimate case, or if its clever attack on your system. Instructions to report false positives are detailed on the Reporting False Positives wiki page. If it is a false positive, we will fix the issue in the rules and get a release out to you promptly.

Tuning Guidance

See the Mod_security page for guidance on tuning this rule.

Additional Information

Similar Rules

WAF_350148

Knowledge Base Articles

None.

Outside References

None.

Notes

None.

Personal tools