Loading...
Loading...
The generated signature creates incorrect predicate http.unknown_header (instead of http.unknown_header_exists).
In the GUI, when the signature with the predicate 'unknown_header' is edited, this predicate is empty (instead of exists / does not exist).
Attack with traffic with 'unknown' header, for example 'Upgrade-Insecure-Requests: 1'.
There is no workaround.
1. Change 'http.unknown_header' predicate into 'http.unknown_header_exists'. 2. Keep supporting the old format 'http.unknown_header'.
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.