(mod_security) mod_security (id:212620) triggered by 45.63.83.26 (45.63.83.26.vultrusercontent.com): ...
show more(mod_security) mod_security (id:212620) triggered by 45.63.83.26 (45.63.83.26.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 03 22:43:17.567573 2024] [security2:error] [pid 12814] [client 45.63.83.26:62483] [client 45.63.83.26] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.jwwsb.org|F|2"] [data "Matched Data: <script found within REQUEST_URI: /index.php?option=\\x22><script>alert(string.fromcharcode(88,83,83))</script>&view=article&id=3&itemid=108"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.jwwsb.org"] [uri "/index.php"] [unique_id "ZoYMRYWQxRCA6QTEHHPt-gAAAAY"], referer: http://www.jwwsb.org/index.php?option="><script >alert(String.fromCharCode(88,83,83))</script>&view=article&id=3&Itemid=108
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show morePorts: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less