NTTãã³ã¢ã¨ã½ãããã³ã¯ã¢ãã¤ã«ã¯ããã£ã¼ãã£ã¼ãã©ã³ï¼ããããã¬ã©ã±ã¼ï¼ã«ã¦JavaScriptã®å¯¾å¿ãå§ãã¦ãã¾ããJavaScriptã«å¯¾å¿ããã¨ãã¯ãã¹ãµã¤ãã»ã¹ã¯ãªããã£ã³ã°(XSS)èå¼±æ§ã®æ¸å¿µãé«ã¾ãã¾ããã両社ã¯ç¬èªã®ææ³ã«ããXSS対çããã¦ããï¼ãããã¨ãã¦ããï¼æåã観測ããã¾ããã®ã§å ±åãã¾ãããã®å
容ã¯ããªã¬æ¨æºJavaScriptåå¼·ä¼ã§ãã¿ã¨ãã¦ä½¿ã£ããã®ã§ãã NTTãã³ã¢ã«å¦ã¶ãXSS対çãã¾ãããµã³ãã«ã¨ãã¦ä»¥ä¸ã®ãããªXSSèå¼±ãªã¹ã¯ãªãããç¨æãã¾ãã <?php session_start(); ?> <body> ããã«ã¡ã¯<?php echo $_GET['p']; ?>ãã </body>ããã以ä¸ã®URLã§èµ·åããã¨ãIE7ã§ã¯ä¸å³ã®ãããªè¡¨ç¤ºã«ãªãã¾ãã []http://example.com/xss01.php?p=å±±ç°<scrip
{{#tags}}- {{label}}
{{/tags}}