Completed

Apache e Wordpress

Published on the July 10, 2016 in IT & Programming

About this project

Open

Estou buscando profissional para solucionar o problema no apache e no wordpress:

Algum recurso presente na programação apresenta vulnerabilidade que está sendo barrado pelo Mod_Security do Apache, conforme se constata pelos trechos de logs a seguir:
[Fri Jul 08 10:54:53.998689 2016] [:error] [pid 19231] [client 179.35.26.199] ModSecurity: Warning. Operator ge matched 4 at tx:outbound_anomaly_score. [File "/usr/local/apache/conf/modsec_vendor_configs/owasp/rules/response-80-correlation.conf"] [line "37"] [id "981205"] [msg "Outbound Anomaly Score Exceeded (score 4): Directory Listing"] [tag "Host: maoemao.com.br"] [hostname "maoemao.com.br"] [uri "/"] [unique_id "V3@wrWKOZAIAAEsfbbIAAAAM"]

[Fri Jul 08 10:54:54.271151 2016] [:error] [pid 18196] [client 179.35.26.199] ModSecurity: Access denied with redirection to http://maoemao.com.br/ using status 302 (phase 4).
Pattern match "(?:<(?:TITLE>Index of.*?<H|title>Index of.*?<H)1>Index of|>\\\\[To Parent Directory\\\\]<\\\\/[Aa]><br>)" at RESPONSE_BODY. [File "/usr/local/apache/conf/modsec_vendor_configs/owasp/rules/response-50-data-leakages.conf"] [line "19"] [id "970013"] [rev "2"] [msg "Directory Listing"] [data "Matched Data: <title>Index of /</title>\\x0a </head>\\x0a <body>\\x0a<h1>Index of found within Response_body: <!doctype html public \\x22-//w3c//dtd html 3.2 Final//EN\\x22>\\x0a<html>\\x0a <head>\\x0a  <title>Index of /</title>\\x0a </head>\\x0a <body>\\x0a<h1>Index of /</h1>\\x0a<ul><li><a href=\\x22.ftpquota\\x22> .ftpquota</a></li>\\x0a<li><a href=\\x22apple.accounte.update.information/\\x22> apple.accounte.update.information/</a></li>\\x0a<li><a href=\\x22fieam/\\x22> fieam/</a></li>\\x0a<li><a href=\\x22fieamvotacao/\\x2..."] [Severity "ERROR"] [ver "OWASP_CRS/3.0.0"] [maturity "9"] [accuracy "9"] [tag "Host: maoemao.com.br"] [tag "OWASP_CRS/LEAKAG [hostname "maoemao.com.br"] [uri "/"] [unique_id "V3@wrmKOZAIAAEcU2f4AAAAD"]

[Fri Jul 08 10:54:54.271302 2016] [:error] [pid 18196] [client 179.35.26.199] ModSecurity: Warning. Operator ge matched 4 at tx:outbound_anomaly_score. [File "/usr/local/apache/conf/modsec_vendor_configs/owasp/rules/response-80-correlation.conf"] [line "37"] [id "981205"] [msg "Outbound Anomaly Score Exceeded (score 4): Directory Listing"] [tag "Host: maoemao.com.br"] [hostname "maoemao.com.br"] [uri "/"] [unique_id "V3@wrmKOZAIAAEcU2f4AAAAD"]

Está dando error no IP e segundo a hospedeira, disse que é isso.

Category IT & Programming
Subcategory Web development
Is this a project or a position? Project
I currently have I have specifications
Required availability As needed
Experience in this type of projects Yes (I have managed this kind of project before)
API Integrations Other (Other APIs)
Roles needed Developer

Delivery term: Not specified

Skills needed

Other projects posted by V. M.