Theme Causing Mod Security Violation
Hi,
My site is: http://discoveringdiamonds.co.uk/
When my client used the admin to update her site it causes a Mod_Security violation on the server and she gets blcoked in the firewall. This is the log entry:
---
[Tue May 19 15:04:32.361817 2015] [:error] [pid 1525:tid
140148637390592] [client 81.131.100.184] ModSecurity: Access denied with
code 406 (phase 2). Pattern match "\\\\b(\\\\d+) ?=
?\\\\1\\\\b|[\\\\'\\"](\\\\w+)[\\\\'\\"] ?= ?[\\\\'\\"]\\\\2\\\\b" at
REQUEST_HEADERS:Cookie. [file
"/usr/local/apache/conf/modsec2.user.conf"] [line "98"] [id
"1234123413"] [msg "SQL Injection Attack"] [data "170=170"] [severity
"CRITICAL"] [tag "WEB_ATTACK/SQL_INJECTION"] [hostname
"discoveringdiamonds.co.uk"] [uri
"/wp-content/themes/betheme/style-colors.php"] [unique_id
"VVtC8F@azzwAAAX1yrkAAAAL"]
---
[Tue May 19 15:04:32.361817 2015] [:error] [pid 1525:tid
140148637390592] [client 81.131.100.184] ModSecurity: Access denied with
code 406 (phase 2). Pattern match "\\\\b(\\\\d+) ?=
?\\\\1\\\\b|[\\\\'\\"](\\\\w+)[\\\\'\\"] ?= ?[\\\\'\\"]\\\\2\\\\b" at
REQUEST_HEADERS:Cookie. [file
"/usr/local/apache/conf/modsec2.user.conf"] [line "98"] [id
"1234123413"] [msg "SQL Injection Attack"] [data "170=170"] [severity
"CRITICAL"] [tag "WEB_ATTACK/SQL_INJECTION"] [hostname
"discoveringdiamonds.co.uk"] [uri
"/wp-content/themes/betheme/style-colors.php"] [unique_id
"VVtC8F@azzwAAAX1yrkAAAAL"]
---
Please could you help me to sort this out?
Comments
we don't understand how can we help. Form what you wrote, we have no idea what is the problem exactly. Maybe the server where your client uses theme is very limited and that's why theme does not work as should.