diff --git a/base_rules/modsecurity_crs_40_generic_attacks.conf b/base_rules/modsecurity_crs_40_generic_attacks.conf index 8cdd49832..c72811710 100644 --- a/base_rules/modsecurity_crs_40_generic_attacks.conf +++ b/base_rules/modsecurity_crs_40_generic_attacks.conf @@ -201,7 +201,7 @@ SecRule TX:PM_SCORE "@eq 0" "phase:2,id:'981134',rev:'2',ver:'OWASP_CRS/2.2.9',m # # File Injection # - SecRule REQUEST_COOKIES|!REQUEST_COOKIES:/__utm/|!REQUEST_COOKIES:/_pk_ref/|REQUEST_COOKIES_NAMES|ARGS_NAMES|ARGS|XML:/* "(?:\b(?:\.(?:ht(?:access|passwd|group)|www_?acl)|global\.asa|httpd\.conf|boot\.ini)\b|\/etc\/)" \ + SecRule REQUEST_COOKIES|!REQUEST_COOKIES:/__utm/|!REQUEST_COOKIES:/_pk_ref/|REQUEST_COOKIES_NAMES|ARGS_NAMES|ARGS|XML:/* "(?:(?