VendorsOWASPowasp_modsecurity_core_rule_set3.2.0
Vulnerabilities

OWASP Owasp Modsecurity Core Rule Set 3.2.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2020-22669
Modsecurity owasp-modsecurity-crs 3.2.0 (Paranoia level at PL1) has a SQL injection bypass vulnerability. Attackers can use the comment characters and variable assignments in the SQL syntax to bypass Modsecurity WAF protection and implement SQL injection attacks on Web applications.
Published 2022-09-02 · Modified
9.8EPSS 0.013