mirror of
				https://github.com/balkian/gists.git
				synced 2025-10-31 07:38:27 +00:00 
			
		
		
		
	git-subtree-dir: repos/25ed1a7b291a47399ae5 git-subtree-mainline:f2ca3b2455git-subtree-split:9806834e5f
		
			
				
	
	
		
			15 lines
		
	
	
		
			621 B
		
	
	
	
		
			Plaintext
		
	
	
	
	
	
			
		
		
	
	
			15 lines
		
	
	
		
			621 B
		
	
	
	
		
			Plaintext
		
	
	
	
	
	
| # Block out any script trying to base64_encode data within the URL.
 | |
| RewriteCond %{QUERY_STRING} base64_encode[^(]*\([^)]*\) [OR]
 | |
| 
 | |
| # Block out any script that includes a <script> tag in URL.
 | |
| RewriteCond %{QUERY_STRING} (<|%3C)([^s]*s)+cript.*(>|%3E) [NC,OR]
 | |
| 
 | |
| # Block out any script trying to set a PHP GLOBALS variable via URL.
 | |
| RewriteCond %{QUERY_STRING} GLOBALS(=|\[|\%[0-9A-Z]{0,2}) [OR]
 | |
| 
 | |
| # Block out any script trying to modify a _REQUEST variable via URL.
 | |
| RewriteCond %{QUERY_STRING} _REQUEST(=|\[|\%[0-9A-Z]{0,2})
 | |
| 
 | |
| # Return 403 Forbidden header and show the content of the root homepage
 | |
| RewriteRule .* index.php [F]
 |