A SQL injection bypass (aka PL1 bypass) exists in OWASP ModSecurity Core Rule Set (owasp-modsecurity-crs) through v3.1.0-rc3 via {ab} where a is a special function name (such as "if") and b is the SQL statement to be executed.
| Software | From | Fixed in |
|---|---|---|
| owasp / owasp_modsecurity_core_rule_set | - | 3.0.2.x |
| owasp / owasp_modsecurity_core_rule_set | 3.1.0-rc1 | 3.1.0-rc1.x |
| owasp / owasp_modsecurity_core_rule_set | 3.1.0-rc3 | 3.1.0-rc3.x |