æ¥æ¬èªå ¨ææ¤ç´¢ã·ã¹ãã ãNamazuãã«XSSã®èå¼±æ§ãçºè¦ãããIPAã¯å ¬éæ¸ã¿ã®ææ°çã¸æ´æ°ããããå¼ã³ããã¦ããã æ å ±å¦çæ¨é²æ©æ§ï¼IPAï¼ã»ãã¥ãªãã£ã»ã³ã¿ã¼ã¨JPCERTã³ã¼ãã£ãã¼ã·ã§ã³ã»ã³ã¿ã¼ï¼JPCERT/CCï¼ã¯3æ21æ¥ããªã¼ãã³ã½ã¼ã¹ã®æ¥æ¬èªå ¨ææ¤ç´¢ã·ã¹ãã ãNamazuãã«ã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ã®èå¼±æ§ãããã¨ãã¦ãå ¬éæ¸ã¿ã®ææ°çã¸æ´æ°ããããå¼ã³ãããã 対象ã¨ãªãã®ã¯ãNamazu 2.0.17ããã³ãã以åã®ãã¼ã¸ã§ã³ã対象ãã¼ã¸ã§ã³ã§ã¯ãåæè¨å®ã§ã¬ã¹ãã³ã¹ãããã®ContentTypeã«æåã»ãããåºåãããWebãã©ã¦ã¶å´ã§namazu.cgiã®åºåçµæããæåã³ã¼ããèªåèªèãã¦è¡¨ç¤ºãããæ¤ç´¢å¼ã«UTF-7ã§ã¨ã³ã³ã¼ãããæååãæå®ããå ´åãWebãã©ã¦ã¶ã®èªåèªèãæ£ããæ©è½ããªãå ´åãããã第ä¸è ãä»»æã®ã¹ã¯ãªãããåãè¾¼ã¿ãã¦ã¼ã¶ã¼ã
{{#tags}}- {{label}}
{{/tags}}