On this page
Atomicorp WAF Rule 340208
Rule Summary
- Rule ID: 340208
- Status: Active
- Alert message: Possible Session Hijacking - IP Address and User-Agent Mismatch.
- Observed CWEs: None documented
- Rule severity: Critical (2)
- Phase: 1 (request headers)
- Rule action: block
- Logging: inherited from SecDefaultAction
Description
This rule detects behavior identified by its current alert as “Possible Session Hijacking - IP Address and User-Agent Mismatch”. It evaluates during the request headers phase and applies the configured blocking action.
Selected Related CVEs
This is a selected list of documented research observations, not an exhaustive coverage matrix. Absence of a CVE does not imply absence of protection.
No selected related public CVE research notes are currently published.