Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Conflict between “apikey” in the url and hosted Emoncms servers #1870

Open
HLFCode opened this issue Dec 16, 2023 · 0 comments
Open

Conflict between “apikey” in the url and hosted Emoncms servers #1870

HLFCode opened this issue Dec 16, 2023 · 0 comments

Comments

@HLFCode
Copy link

HLFCode commented Dec 16, 2023

This is an issue raised on the forum
I host Emoncms on a Krystal Hosting server and we had a 4 day outage because of their Imunify360 rules.

It turns out that they block urls with the word “apikey” in because:
The rule is detecting "apikey" from the URL, which is the name for a wordpress fakeplugin.
This “rule” took the whole site offline for IP addresses sending apikey in the url so I couldn’t even get in to manage the site…

They have (temporarily?) switched off the rule for my site but it will probably bite someone else.

Would it be possible to add an alternative word like “key” (leaving apikey so as not to break existing installations)

The rule includes other strings but they don’t look like they would cause a problem for Emoncms

ModSecurity: Access denied with code 403, [Rule: 'REQUEST_URI' '@rx (wordpresscore|wp-zexit|wp-clearlineee|wp-resortpack|apikey|ioptimization|bqxtbuu|blnmrpb|wp-breeze|loftloader\.2\.4\.0|cve-2023-45124|root-file-manager|ph-file-manager|zer0day|file-manager-zeroday|phoenix_)'] [id "77350295"] [msg "IM360 WAF: Interaction with fake plugin||WPU:||T:LITESPEED||"] [severity "CRITICAL"] [tag "service_i360custom"] [tag "service_wp_plugin"]
Thanks for a great package
Mike

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant