Hello, I found the following in the access.log today. It looks like the apache has executed the request successfully with a 200. Is it a bad thing that I need to block with modsecurity ? Thanks.
195.3.146.94 - - [16/Jun/2013:19:04:16 +0000] "GET /?q=admin&destination=admin HTTP/1.0" 200 476 " http://mydomain.org/administrator/index.php" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.19 (KHTML, like Gecko) Chrome/18.0.1025.162 Safari/535.19"
_______________________________________________ Owasp-modsecurity-core-rule-set mailing list Owasp-modsecurity-core-rule-set@lists.owasp.org https://lists.owasp.org/mailman/listinfo/owasp-modsecurity-core-rule-set