Question

Photo of Seth Thomas

0

w00tw00t blackhat Exception concern...

We keep getting this Rock Exception Notification. Can anyone offer any knowledge or suggestions regarding the seriousness of this? We host RockRMS with Winhost.com. Thanks!



An exception has occurred. Details of this error can be found below:

An error occurred on the Rock site on page:
http://162.250.75.232:80/w00tw00t.at.blackhats.romanian.anti-sec:)

HttpException in System.Web

Message
A potentially dangerous Request.Path value was detected from the client (:).

Stack Trace
at System.Web.HttpRequest.ValidateInputIfRequiredByConfig()
at System.Web.HttpApplication.PipelineStepManager.ValidateHelper(HttpContext context)

  • Photo of Arran France

    0

    Hey Seth, most Rock admins will see this fairly often. It's attackers trying to see if your server is vulnerable to a specific PHP exploit. Rock isn't affected, you're fine! 

  • Photo of Seth Thomas

    0

    Oops. I see this has been asked and addressed before. Thanks!

    • Jim Michael

      If they really bother you, it’s possibe to filter such bogus requests before they get to Rock by using URL Rewriter in IIS.