{"id":13664502,"date":"2020-11-15T13:35:23","date_gmt":"2020-11-15T13:35:23","guid":{"rendered":"https:\/\/wordpress.org\/support\/topic\/file-browser-mod-security\/"},"modified":"2020-11-15T13:35:23","modified_gmt":"2020-11-15T13:35:23","slug":"file-browser-mod-security","status":"publish","type":"topic","link":"https:\/\/wordpress.org\/support\/topic\/file-browser-mod-security\/","title":{"rendered":"File Browser + Mod Security"},"content":{"rendered":"<p>Hello,<br \/>\ncurrently I got problems adding files using the file browser.<\/p>\n<p>Problem is, that opening the file browser in the post edit form i got a 403 response. I took a look in the server log in this is due to mod security rules. I#m not able to deactivate them.<\/p>\n<p>Please help me changing this behaviour within the plugin.<\/p>\n<p>Affected mod security IDs are: 214620 214940<\/p>\n<p>Whole messages are:<br \/>\nModSecurity: Warning. Operator GE matched 4 at TX:outgoing_points. [file &#8220;\/etc\/apache2\/modsecurity.d\/rules\/comodo_free\/20_Outgoing_FiltersEnd.conf&#8221;] [line &#8220;38&#8221;] [id &#8220;214940&#8221;] [rev &#8220;2&#8221;] [msg &#8220;COMODO WAF: Outbound Points Exceeded| Total Points: 4<\/p>\n<p>ModSecurity: Access denied with code 403 (phase 4). Pattern match &#8220;(?:\\\\\\\\b(?:call_user_func|f(?:get(?:c|s{0,1}s)|open|read|scanf|tp_(?:nb_){0,1}f{0,1}(?:ge|pu)t|write)|gz(?:compress|open|read|(?:encod|writ)e)|move_uploaded_file|read(?:dir|(?:gz){0,1}file)|s(?:candir|ession_start)|(?:bz|proc_)open)|\\\\\\\\$_(?:session|(?:ge| &#8230;&#8221; at RESPONSE_BODY. [file &#8220;\/etc\/apache2\/modsecurity.d\/rules\/comodo_free\/16_Outgoing_FilterPHP.conf&#8221;] [line &#8220;17&#8221;] [id &#8220;214620&#8221;] [rev &#8220;1&#8221;] [msg &#8220;COMODO WAF: PHP source code leakage|<\/p>\n","protected":false},"template":"","class_list":["post-13664502","topic","type-topic","status-publish","hentry","topic-tag-file-browser","topic-tag-mod_security"],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/13664502","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic"}],"about":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/types\/topic"}],"version-history":[{"count":0,"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/13664502\/revisions"}],"wp:attachment":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/media?parent=13664502"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}