|
File inclusion vulnerability is a type of vulnerability most often found on websites. It allows an attacker to include a file, usually through a script on the web server. The vulnerability occurs due to the use of user-supplied input without proper validation. This can lead to something as minimal as outputting the contents of the file or more serious events such as: * Code execution on the web server * Code execution on the client-side such as JavaScript which can lead to other attacks such as cross site scripting (XSS) * Denial of service (DoS) * Data theft/manipulation ==Types of inclusion== 抄文引用元・出典: フリー百科事典『 ウィキペディア(Wikipedia)』 ■ウィキペディアで「File inclusion vulnerability」の詳細全文を読む スポンサード リンク
|