Rule Name:The Content-Type header is illegal in the HTTP Request
Severity:mid
CVE ID:
Descripiton:
Attakers may hack the Web server making use of HTTP. According to the RFC definition, the valid format of Content-Type is 'type "/" subtype *( OWS ";" OWS parameter )'.This rule supports to defend the A1: Broken Access Control of OWASP Top 10 - 2021. Other reference:None