2014:02:28-20:07:35 firewall reverseproxy: 2,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templateLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBgAAACK"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.619851 2014] [security2:error] [pid 20415:tid 4114615152] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:union\\\\s*?(?:all|distinct|[(!@]*?)?\\\\s*?[([]*?\\\\s*?select\\\\s+)|(?:\\\\w+\\\\s+like\\\\s+[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\%)|(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?like\\\\W*?[\\"'`\\xc2\\xb4 ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "223"] [id "981245"] [msg "Detects basic SQL authentication bypass attempts 2/3"] [data "Matched Data: \\x22:[\\x22Eengezinswoning\\x22],\\x22s found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\ 2014:02:28-20:07:35 firewall reverseproxy: x22templateLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBkAAACC"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.619885 2014] [security2:error] [pid 20415:tid 4055866224] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:union\\\\s*?(?:all|distinct|[(!@]*?)?\\\\s*?[([]*?\\\\s*?select\\\\s+)|(?:\\\\w+\\\\s+like\\\\s+[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\%)|(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?like\\\\W*?[\\"'`\\xc2\\xb4 ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "223"] [id "981245"] [msg "Detects basic SQL authentication bypass attempts 2/3"] [data "Matched Data: \\x22:[\\x22Eengezinswoning\\x22],\\x22s found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\ 2014:02:28-20:07:35 firewall reverseproxy: x22templateLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBoAAACJ"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.619970 2014] [security2:error] [pid 20415:tid 4089437040] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:union\\\\s*?(?:all|distinct|[(!@]*?)?\\\\s*?[([]*?\\\\s*?select\\\\s+)|(?:\\\\w+\\\\s+like\\\\s+[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\%)|(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?like\\\\W*?[\\"'`\\xc2\\xb4 ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "223"] [id "981245"] [msg "Detects basic SQL authentication bypass attempts 2/3"] [data "Matched Data: \\x22:[\\x22Eengezinswoning\\x22],\\x22s found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\ 2014:02:28-20:07:35 firewall reverseproxy: x22templateLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBsAAACF"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.620055 2014] [security2:error] [pid 20415:tid 4047473520] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:union\\\\s*?(?:all|distinct|[(!@]*?)?\\\\s*?[([]*?\\\\s*?select\\\\s+)|(?:\\\\w+\\\\s+like\\\\s+[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\%)|(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?like\\\\W*?[\\"'`\\xc2\\xb4 ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "223"] [id "981245"] [msg "Detects basic SQL authentication bypass attempts 2/3"] [data "Matched Data: \\x22:[\\x22Eengezinswoning\\x22],\\x22s found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\ 2014:02:28-20:07:35 firewall reverseproxy: x22templateLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBgAAACK"] 2014:02:28-20:07:35 firewall reverseproxy: srcip="92.108.145.226" localip="77.60.57.114" size="263" user="-" host="92.108.145.226" method="GET" statuscode="200" reason="-" extra="-" exceptions="-" time="44749" url="/usercontrols/kim/aanbod/resource.ashx" server="aanbod.waterwegwonen.nl" referer="http://aanbod.waterwegwonen.nl/ons-koopaanbod/eengezinswoning" cookie="__utma=170898342.312999212.1380733726.1392330748.1392336685.39; __utmz=170898342.1391107058.36.4.utmcsr=google|utmccn=(organic)|utmcmd=organic|utmctr=(not%20provided); __AntiForgeryToken=xskxx0owd5Ls6/SCkOiy5KZ5GU3uNxxnITprVs0EQWI4vvUvkHWqMR2FtEI3KZT+zVtCPPNuF2jJBfFeKlpyMqBIz7DUDSH0ntYonDC6p/s=; __utma=108819602.1236023598.1391468785.1392327133.1393614451.3; __utmb=108819602.2.10.1393614451; __utmc=108819602; __utmz=108819602.1391468785.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none)" set-cookie="-" 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.620829 2014] [security2:error] [pid 20415:tid 4114615152] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:in\\\\s*?\\\\(+\\\\s*?select)|(?:(?:n?and|x?x?or|div|like|between|and|not |\\\\|\\\\||\\\\&\\\\&)\\\\s+[\\\\s\\\\w+]+(?:regexp\\\\s*?\\\\(|sounds\\\\s+like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]|[=\\\\d]+x))|([\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\d\\\\s*?(?:--|#)) ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "239"] [id "981246"] [msg "Detects basic SQL authentication bypass attempts 3/3"] [data "Matched Data: \\x22aanbodtypes\\x22:[\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templat 2014:02:28-20:07:35 firewall reverseproxy: eLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBkAAACC"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.620850 2014] [security2:error] [pid 20415:tid 4055866224] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:in\\\\s*?\\\\(+\\\\s*?select)|(?:(?:n?and|x?x?or|div|like|between|and|not |\\\\|\\\\||\\\\&\\\\&)\\\\s+[\\\\s\\\\w+]+(?:regexp\\\\s*?\\\\(|sounds\\\\s+like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]|[=\\\\d]+x))|([\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\d\\\\s*?(?:--|#)) ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "239"] [id "981246"] [msg "Detects basic SQL authentication bypass attempts 3/3"] [data "Matched Data: \\x22aanbodtypes\\x22:[\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templat 2014:02:28-20:07:35 firewall reverseproxy: eLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBoAAACJ"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.620981 2014] [security2:error] [pid 20415:tid 4089437040] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:in\\\\s*?\\\\(+\\\\s*?select)|(?:(?:n?and|x?x?or|div|like|between|and|not |\\\\|\\\\||\\\\&\\\\&)\\\\s+[\\\\s\\\\w+]+(?:regexp\\\\s*?\\\\(|sounds\\\\s+like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]|[=\\\\d]+x))|([\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\d\\\\s*?(?:--|#)) ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "239"] [id "981246"] [msg "Detects basic SQL authentication bypass attempts 3/3"] [data "Matched Data: \\x22aanbodtypes\\x22:[\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templat 2014:02:28-20:07:35 firewall reverseproxy: eLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBsAAACF"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.621043 2014] [security2:error] [pid 20415:tid 4047473520] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:in\\\\s*?\\\\(+\\\\s*?select)|(?:(?:n?and|x?x?or|div|like|between|and|not |\\\\|\\\\||\\\\&\\\\&)\\\\s+[\\\\s\\\\w+]+(?:regexp\\\\s*?\\\\(|sounds\\\\s+like\\\\s*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]|[=\\\\d]+x))|([\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\d\\\\s*?(?:--|#)) ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "239"] [id "981246"] [msg "Detects basic SQL authentication bypass attempts 3/3"] [data "Matched Data: \\x22aanbodtypes\\x22:[\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templat 2014:02:28-20:07:35 firewall reverseproxy: eLijst\\x22}"] [severity "CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBgAAACK"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.621305 2014] [security2:error] [pid 20415:tid 4114615152] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\*.+(?:x?or|div|like|between|and|id)\\\\W*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\d)|(?:\\\\^[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:^[\\\\w\\\\s\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98-]+(?<=and\\\\s)(?<=or|xor ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "245"] [id "981243"] [msg "Detects classic SQL injection probings 2/2"] [data "Matched Data: \\x22:[],\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templateLijst\\x22}"] [severity " 2014:02:28-20:07:35 firewall reverseproxy: CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBkAAACC"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.621336 2014] [security2:error] [pid 20415:tid 4055866224] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\*.+(?:x?or|div|like|between|and|id)\\\\W*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\d)|(?:\\\\^[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:^[\\\\w\\\\s\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98-]+(?<=and\\\\s)(?<=or|xor ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "245"] [id "981243"] [msg "Detects classic SQL injection probings 2/2"] [data "Matched Data: \\x22:[],\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templateLijst\\x22}"] [severity " 2014:02:28-20:07:35 firewall reverseproxy: CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBoAAACJ"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.621565 2014] [security2:error] [pid 20415:tid 4089437040] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\*.+(?:x?or|div|like|between|and|id)\\\\W*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\d)|(?:\\\\^[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:^[\\\\w\\\\s\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98-]+(?<=and\\\\s)(?<=or|xor ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "245"] [id "981243"] [msg "Detects classic SQL injection probings 2/2"] [data "Matched Data: \\x22:[],\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templateLijst\\x22}"] [severity " 2014:02:28-20:07:35 firewall reverseproxy: CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBsAAACF"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.621616 2014] [security2:error] [pid 20415:tid 4047473520] [client 92.108.145.226] ModSecurity: Warning. Pattern match "(?i:(?:[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\s*?\\\\*.+(?:x?or|div|like|between|and|id)\\\\W*?[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98]\\\\d)|(?:\\\\^[\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98])|(?:^[\\\\w\\\\s\\"'`\\xc2\\xb4\\xe2\\x80\\x99\\xe2\\x80\\x98-]+(?<=and\\\\s)(?<=or|xor ..." at REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_sql_injection_attacks.conf"] [line "245"] [id "981243"] [msg "Detects classic SQL injection probings 2/2"] [data "Matched Data: \\x22:[],\\x22 found within REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22Eengezinswoning\\x22],\\x22sorting\\x22:{\\x22field\\x22:\\x22Naam\\x22,\\x22reverse\\x22:false,\\x22istext\\x22:true},\\x22template\\x22:\\x22templateLijst\\x22}"] [severity " 2014:02:28-20:07:35 firewall reverseproxy: CRITICAL"] [tag "OWASP_CRS/WEB_ATTACK/SQL_INJECTION"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBgAAACK"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.623161 2014] [security2:error] [pid 20415:tid 4114615152] [client 92.108.145.226] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(.*)" at TX:981172-OWASP_CRS/WEB_ATTACK/RESTRICTED_SQLI_CHARS-REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_inbound_blocking.conf"] [line "26"] [id "981176"] [msg "Inbound Anomaly Score Exceeded (Total Score: 23, SQLi=5, XSS=): Last Matched Message: 981243-Detects classic SQL injection probings 2/2"] [data "Last Matched Data: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBkAAACC"] 2014:02:28-20:07:35 firewall reverseproxy: [Fri Feb 28 20:07:35.623180 2014] [security2:error] [pid 20415:tid 4055866224] [client 92.108.145.226] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(.*)" at TX:981172-OWASP_CRS/WEB_ATTACK/RESTRICTED_SQLI_CHARS-REQUEST_COOKIES:koopaanbodsettings-%2Fons-koopaanbod%2Feengezinswoning. [file "/usr/apache/conf/waf/modsecurity_crs_inbound_blocking.conf"] [line "26"] [id "981176"] [msg "Inbound Anomaly Score Exceeded (Total Score: 23, SQLi=5, XSS=): Last Matched Message: 981243-Detects classic SQL injection probings 2/2"] [data "Last Matched Data: {\\x22filters\\x22:[],\\x22aanbodtypes\\x22:[\\x22"] [hostname "aanbod.waterwegwonen.nl"] [uri "/usercontrols/kim/aanbod/resource.ashx"] [unique_id "UxDed008OXIAAE@-oBoAAACJ"]