ã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼è±: cross-site scriptingï¼ã¨ã¯ãWebã¢ããªã±ã¼ã·ã§ã³ã®èå¼±æ§[1]ãããã¯ãããå©ç¨ããæ»æãèå¼±æ§ãããªã¼åã«åé¡ããCWEã§ã¯ãã®æ»æãä¸é©åãªå ¥åç¢ºèª (CWE-20) ã«ããã¤ã³ã¸ã§ã¯ã·ã§ã³ (CWE-74) ã®ã²ã¨ã¤ã¨ãã¦åé¡ãã¦ãã (CWE-79)[2]ãç¥ç§°ã¯XSSããã¤ã¦ã¯CSSã¨ããç¥ç§°ã使ããã¦ããããCascading Style Sheetsã¨ç´ããããã®ã§ãã®ç¥ç§°ã¯ãã¾ã使ãããªããªã£ã[1]ã ãã¯ãã¹ãµã¤ãï¼ãµã¤ã横æï¼ãã¨ããå称ã¯æ´å²çãªãã®ã§ãåæã«çºè¦ãããXSSã§ã¯èå¼±æ§ã®ãããµã¤ãã¨æ»æè ã®ãµã¤ããããµã¤ã横æçãã«å©ç¨ãã¦æ»æãå®è¡ãããã¨ããåã¥ãããããã®ã ã[3][4]ãXSSã®å®ç¾©ã¯æ°ããã¿ã¤ãã®æ»æãè¦ã¤ãããã³ã«æ¡å¼µããããµã¤ã横æçãªãã®ã§ãªãã¨ãXSSã¨å¼ã¶ããã«ãªã£ã[3]
{{#tags}}- {{label}}
{{/tags}}