Uploaded image for project: 'phpBB'
  1. phpBB
  2. PHPBB-15114

Send statistics can trigger mod_security

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Won't Fix
    • Icon: Minor Minor
    • None
    • 3.2.0
    • ACP
    • None

      See this post: https://www.phpbb.com/community/viewtopic.php?p=14681206#p14681206

      TL;DR: The questionnaire is encoding RAW_DATA as base64 and we are sending that data via ajax to another server. Appearently some hosts are scanning the produced html code and if they recognize base64 in input field values, they might trigger mod_security and ban the admins that are calling the page.

            Marc Marc
            Elsensee Oliver Schramm
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: