èªå·±ç´¹ä» ïå°å· ïçµæ´ ï~2009: Webã¢ããªéçºã®ãã¤ã&æ¥åå§è¨ ï2009~2019: ä¸è±éå·¥ ïイッï¾ä½ãé¢ä¿ãªããéè¯ã®ãã½ã³ã³ã®å¤§å çãã¦ã ï2019~ãã¾: root ip ïB2Bã®SaaSä½ã£ã¦ã¾ã ïPHPã¨Vueåãã人æ¥ã¦ï¼ï¼ï¼ é¢ç½ãã£ãèå¼±æ§ - CVE-2023-22727 ïPHPãã¬ã¼ã ã¯ã¼ã¯ CakePHP 4 ã®SQLã¤ã³ã¸ã§ã¯ã·ã§ã³èå¼±æ§ ïORM limit(), offset() ã§SQLi ïCVSS v3 9.8 ï2023/01ã«ä¿®æ£æ¸ã¿ ïCakePHP ïLaravelã®æ¬¡ã«ä½¿ç¨çé«ããã¬ã¼ã ã¯ã¼ã¯(å¤å) ïå²ã¨ä½¿ãããããããå§ã ïä¸è¬ã«ã³ã¼ãå質ãä¸ããéç解æãã¼ã«ã®ä½¿ç¨ã§éã«çºç
{{#tags}}- {{label}}
{{/tags}}