Azure App Gateway WAF Are Triggered by Certain Character Sequences in the Authorization Code
Last Updated:
Overview
-
Microsoft_DefaultRuleSet-1.1-SQLI-942450 (SQL Hex Encoding Identified) – gets triggered by following the pattern “0x”
-
Microsoft_DefaultRuleSet-1.1-SQLI-942440 (SQL Comment Sequence Detected) – gets triggered by following the pattern “—"
Applies To
- Azure App Gateway
- WAF
- SQL Hex Encoding Identified
- SQL Comment Sequence Detected