Last Modified: Jul 30, 2024
Affected Product(s):
BIG-IP ASM
Fixed In:
17.1.1, 16.1.5
Opened: Aug 04, 2021 Severity: 3-Major
If a request is configured "Body is Mandatory", any request with "act as a GET" method with no body triggers a "Mandatory request body is missing" violation
The request is blocked with "Mandatory request body is missing" violation
- Create default "/index.php" URL with "Any" method and enabled "Body is Mandatory" setting -Request with GET or 'act as GET' method with no body
None
The request passes with no violations.