On this page
Atomicorp WAF Rule 330790
Rule Summary
- Rule ID: 330790
- Status: Active
- Alert message: Apache Error: Invalid URI in Request. This event is not caused by this rule. This rule is just reporting a critical apache error.
- Observed CWEs: None documented
- Revision: 2
- Rule severity: Critical (2)
- Phase: 5 (logging)
- Rule action: pass
- HTTP status: 403
- Logging: log, auditlog
Description
This event is not caused by the rules, ASL or modsecurity. This rule simply reports when apache reports a critical error with a request, such as an Invalid URI. This rule does not cause this error, therefore disabling this rule will not prevent apache from rejecting these requests, nor will it prevent apache from reporting these errors. This is just a reporting rule that reports when apache has rejected the request. The rule does not cause this event, it simply reports it.
False Positives
False positives with this rule are not possible. The rule does not cause this event, nor will disabling it prevent apache from generating these errors. If this occurs, it means apache, and not mod_security, has generating an error with the request. You will want to discuss the actual apache error with your client, application developer, integrator and/or apache vendor. This is not a mod_security or ASL caused event.
Tuning Guidance
None.
Selected Related CVEs
This is a selected list of documented research observations, not an exhaustive coverage matrix. Absence of a CVE does not imply absence of protection.
No selected related public CVE research notes are currently published.
Documentation Source
- Original wiki page: WAF 330790
- Source revision: 2350
- Source revision date: 2012-06-07