Hi experts

As per your old post ,We installed mod-security on apache 2.2.

but facing some issue on xss cross script.

for example:
www.abc.com/aaa/home.html/?×=@scripts 

the above url is getting blocked by apache and redirecting to domian url.

www.abc.com/aaa/home.html/×=@scripts 

this url where query string is not their is not detecting by apache and going to 404 error page.

where to add the rule to block xss cross script issues.


0
LVL 33

Comment

by:Brian B
You have entered this as a post, but it looks like it is a question. If you are referring to a previous question, go back to it and use the "ask a related question" button. That will help the Experts find the history. Otherwise you should probably re-submit this as a question using the "ask a question" button at the top of the screen, or this link: https://www.experts-exchange.com/askQuestion.jsp
0

Keep in touch with Experts Exchange

Tech news and trends delivered to your inbox every month