{"id":6000,"date":"2023-11-30T17:57:59","date_gmt":"2023-11-30T08:57:59","guid":{"rendered":"https:\/\/wpmake.jp\/contents\/?post_type=security&#038;p=6000"},"modified":"2023-12-13T18:59:01","modified_gmt":"2023-12-13T09:59:01","slug":"remort-code-execution","status":"publish","type":"security","link":"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution","title":{"rendered":"\u300c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\uff08RCE\uff09\u300d\u306e\u8106\u5f31\u6027\u3068\u306f\uff1fWordPress\u306e\u4e8b\u4f8b\u3068\u5bfe\u7b56\u3092\u89e3\u8aac"},"content":{"rendered":"<p>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\uff08RCE\uff09\u306f\u3001\u653b\u6483\u8005\u304c\u9060\u9694\u304b\u3089\u9001\u4fe1\u3057\u305f\u30b3\u30fc\u30c9\u304c\u5b9f\u884c\u3055\u308c\u3066\u3057\u307e\u3046\u8106\u5f31\u6027\u3067\u3059\u3002<\/p>\n<p>WordPress\u30b5\u30a4\u30c8\u3067\u3082\u3053\u306e\u8106\u5f31\u6027\u304c\u60aa\u7528\u3055\u308c\u308b\u3068\u3001\u30da\u30fc\u30b8\u306e\u6539\u3056\u3093\u3084\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u8a2d\u7f6e\u306a\u3069\u3001\u3055\u307e\u3056\u307e\u306a\u88ab\u5bb3\u304c\u767a\u751f\u3059\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u672c\u8a18\u4e8b\u3067\u306f\u3001\u30b5\u30a4\u30c8\u3092\u5b89\u5168\u306b\u4fdd\u3064\u305f\u3081\u306b\u5fc5\u8981\u306a\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306b\u95a2\u3059\u308b\u57fa\u790e\u77e5\u8b58\u3092\u89e3\u8aac\u3059\u308b\u3068\u5171\u306b\u3001\u30b5\u30a4\u30c8\u904b\u55b6\u8005\u304c\u53d6\u308b\u3079\u304d\u5bfe\u7b56\u3092\u7d39\u4ecb\u3057\u307e\u3059\u3002<\/p>\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_71 counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">\u76ee\u6b21<\/p>\n<span class=\"ez-toc-title-toggle\"><a href=\"#\" class=\"ez-toc-pull-right ez-toc-btn ez-toc-btn-xs ez-toc-btn-default ez-toc-toggle\" aria-label=\"Toggle Table of Content\"><span class=\"ez-toc-js-icon-con\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #282828;color:#282828\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #282828;color:#282828\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/span><\/a><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%80%8C%E3%83%AA%E3%83%A2%E3%83%BC%E3%83%88%E3%82%B3%E3%83%BC%E3%83%89%E5%AE%9F%E8%A1%8C%E3%80%8D%E3%81%A8%E3%81%AF\" title=\"\u300c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u300d\u3068\u306f\">\u300c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u300d\u3068\u306f<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%AA%E3%83%A2%E3%83%BC%E3%83%88%E3%82%B3%E3%83%BC%E3%83%89%E5%AE%9F%E8%A1%8C%E3%82%92%E5%BC%95%E3%81%8D%E8%B5%B7%E3%81%93%E3%81%993%E5%A4%A7%E5%8E%9F%E5%9B%A0\" title=\"\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u5f15\u304d\u8d77\u3053\u30593\u5927\u539f\u56e0\">\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u5f15\u304d\u8d77\u3053\u30593\u5927\u539f\u56e0<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%BB%E3%82%A4%E3%83%B3%E3%82%B8%E3%82%A7%E3%82%AF%E3%82%B7%E3%83%A7%E3%83%B3%EF%BC%88Injection%EF%BC%89\" title=\"\u30fb\u30a4\u30f3\u30b8\u30a7\u30af\u30b7\u30e7\u30f3\uff08Injection\uff09\">\u30fb\u30a4\u30f3\u30b8\u30a7\u30af\u30b7\u30e7\u30f3\uff08Injection\uff09<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%BB%E5%A2%83%E7%95%8C%E5%A4%96%E6%9B%B8%E3%81%8D%E8%BE%BC%E3%81%BF%EF%BC%88Out-of-Bounds_Write%EF%BC%89\" title=\"\u30fb\u5883\u754c\u5916\u66f8\u304d\u8fbc\u307f\uff08Out-of-Bounds Write\uff09\">\u30fb\u5883\u754c\u5916\u66f8\u304d\u8fbc\u307f\uff08Out-of-Bounds Write\uff09<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%BB%E5%AE%89%E5%85%A8%E3%81%A7%E3%81%AA%E3%81%84%E3%83%87%E3%82%B7%E3%83%AA%E3%82%A2%E3%83%A9%E3%82%A4%E3%82%BA%EF%BC%88Insecure_Deserialization%EF%BC%89\" title=\"\u30fb\u5b89\u5168\u3067\u306a\u3044\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\uff08Insecure Deserialization\uff09\">\u30fb\u5b89\u5168\u3067\u306a\u3044\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\uff08Insecure Deserialization\uff09<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%AA%E3%83%A2%E3%83%BC%E3%83%88%E3%82%B3%E3%83%BC%E3%83%89%E5%AE%9F%E8%A1%8C%E3%81%AB%E3%82%88%E3%82%8A%E8%B5%B7%E3%81%93%E3%82%8A%E3%81%88%E3%82%8B%E8%A2%AB%E5%AE%B3\" title=\"\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306b\u3088\u308a\u8d77\u3053\u308a\u3048\u308b\u88ab\u5bb3\">\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306b\u3088\u308a\u8d77\u3053\u308a\u3048\u308b\u88ab\u5bb3<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#WordPress%E3%82%B5%E3%82%A4%E3%83%88%E3%81%A7%E3%81%AE%E4%BA%8B%E4%BE%8B\" title=\"WordPress\u30b5\u30a4\u30c8\u3067\u306e\u4e8b\u4f8b\">WordPress\u30b5\u30a4\u30c8\u3067\u306e\u4e8b\u4f8b<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E5%AF%BE%E7%AD%96\" title=\"\u5bfe\u7b56\">\u5bfe\u7b56<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%82%BD%E3%83%95%E3%83%88%E3%82%A6%E3%82%A7%E3%82%A2%E3%82%92%E6%9C%80%E6%96%B0%E3%81%AE%E3%83%90%E3%83%BC%E3%82%B8%E3%83%A7%E3%83%B3%E3%81%AB%E3%82%A2%E3%83%83%E3%83%97%E3%83%87%E3%83%BC%E3%83%88%E3%81%99%E3%82%8B\" title=\"\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3092\u6700\u65b0\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u306b\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3059\u308b\">\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3092\u6700\u65b0\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u306b\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3059\u308b<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%87%E3%83%BC%E3%82%BF%E3%81%AE%E3%82%B5%E3%83%8B%E3%82%BF%E3%82%A4%E3%82%B8%E3%83%B3%E3%82%B0%E3%82%92%E8%A1%8C%E3%81%86\" title=\"\u30c7\u30fc\u30bf\u306e\u30b5\u30cb\u30bf\u30a4\u30b8\u30f3\u30b0\u3092\u884c\u3046\">\u30c7\u30fc\u30bf\u306e\u30b5\u30cb\u30bf\u30a4\u30b8\u30f3\u30b0\u3092\u884c\u3046<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%83%88%E3%83%A9%E3%83%95%E3%82%A3%E3%83%83%E3%82%AF%E3%81%AE%E7%9B%A3%E8%A6%96%E3%82%92%E8%A1%8C%E3%81%86\" title=\"\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u76e3\u8996\u3092\u884c\u3046\">\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u76e3\u8996\u3092\u884c\u3046<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%82%A2%E3%82%AF%E3%82%BB%E3%82%B9%E5%88%B6%E5%BE%A1\" title=\"\u30a2\u30af\u30bb\u30b9\u5236\u5fa1\">\u30a2\u30af\u30bb\u30b9\u5236\u5fa1<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/wpmake.jp\/contents\/security\/remort-code-execution\/#%E3%81%BE%E3%81%A8%E3%82%81\" title=\"\u307e\u3068\u3081\">\u307e\u3068\u3081<\/a><\/li><\/ul><\/nav><\/div>\n<h2><span class=\"ez-toc-section\" id=\"%E3%80%8C%E3%83%AA%E3%83%A2%E3%83%BC%E3%83%88%E3%82%B3%E3%83%BC%E3%83%89%E5%AE%9F%E8%A1%8C%E3%80%8D%E3%81%A8%E3%81%AF\"><\/span>\u300c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u300d\u3068\u306f<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u300c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\uff08Remote Code Execution\uff09\u300d\u306f\u3001\u5916\u90e8\u304b\u3089\u306e\u5165\u529b\u3092\u53d7\u3051\u4ed8\u3051\u308b\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3084\u30b7\u30b9\u30c6\u30e0\u3067\u751f\u3058\u308b\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8106\u5f31\u6027\u306e\u4e00\u3064\u3002<\/p>\n<p>\u9060\u9694\u304b\u3089\u9001\u4fe1\u3055\u308c\u305f\u30d7\u30ed\u30b0\u30e9\u30e0\u30b3\u30fc\u30c9\u3092\u5b9f\u884c\u3067\u304d\u3066\u3057\u307e\u3046\u3053\u3068\u3092\u6307\u3057\u307e\u3059\u3002<\/p>\n<p>\u3053\u306e\u8106\u5f31\u6027\u3092\u60aa\u7528\u3057\u305f\u653b\u6483\u306f\u3001\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u653b\u6483\u3068\u547c\u3070\u308c\u307e\u3059\u3002<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed1-2.jpg\" alt=\"\" width=\"1200\" height=\"820\" class=\"aligncenter size-full wp-image-6001\" srcset=\"https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed1-2.jpg 1200w, https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed1-2-300x205.jpg 300w, https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed1-2-1024x700.jpg 1024w, https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed1-2-768x525.jpg 768w\" sizes=\"(max-width: 1200px) 100vw, 1200px\" \/><\/p>\n<p>\u30b5\u30fc\u30d0\u30fc\u306b\u8106\u5f31\u6027\u304c\u3042\u308b\u3068\u3001\u4e0d\u6b63\u306a\u30b3\u30fc\u30c9\u304c\u5b9f\u884c\u3055\u308c\u3001\u610f\u56f3\u305b\u306c\u7d50\u679c\u3092\u653b\u6483\u8005\u306b\u8fd4\u3057\u3066\u3057\u307e\u3044\u307e\u3059\u3002<\/p>\n<p>\u305d\u3053\u304b\u3089\u30b7\u30b9\u30c6\u30e0\u3078\u306e\u4fb5\u5165\u3084\u6a29\u9650\u6607\u683c\u304c\u884c\u308f\u308c\u308b\u3068\u3001\u3044\u308f\u3070\u300c\u81ea\u793e\u306e\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\u30fc\u3092\u8d64\u306e\u4ed6\u4eba\u304c\u52dd\u624b\u306b\u4f7f\u3048\u3066\u3057\u307e\u3046\u72b6\u614b\u300d\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>\u305d\u308c\u304c\u3069\u308c\u3060\u3051\u5371\u967a\u306a\u72b6\u614b\u304b\u306f\u60f3\u50cf\u306b\u96e3\u304f\u306a\u3044\u3067\u3057\u3087\u3046\u3002<\/p>\n<p>\u7c73\u30b5\u30a4\u30d0\u30fc\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30fb\u30a4\u30f3\u30d5\u30e9\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5e81\uff08CISA\uff09\u304c2023\u5e748\u6708\u306b\u767a\u8868\u3057\u305f\u300c2022 \u5e74\u306b\u65e5\u5e38\u7684\u306b\u60aa\u7528\u3055\u308c\u305f\u4e0a\u4f4d\u306e\u8106\u5f31\u6027\u300d\u30c8\u30c3\u30d712\u3067\u306f\u3001\u3046\u3061\u534a\u6570\u304c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306b\u95a2\u3059\u308b\u8106\u5f31\u6027\u3067\u3057\u305f\u3002<\/p>\n<p>\u3053\u306e\u8106\u5f31\u6027\u306f\u653b\u6483\u304c\u5bb9\u6613\u3067\u653b\u6483\u983b\u5ea6\u3082\u9ad8\u304f\u3001\u60aa\u7528\u3055\u308c\u308b\u53ef\u80fd\u6027\u304c\u9ad8\u3044\u306e\u304c\u7279\u5fb4\u3067\u3059\u3002<\/p>\n<p>\u4f7f\u7528\u3057\u3066\u3044\u308b\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3084\u30d7\u30e9\u30b0\u30a4\u30f3\u306a\u3069\u306b\u8106\u5f31\u6027\u304c\u767a\u898b\u3055\u308c\u305f\u5834\u5408\u306f\u3001\u65e9\u6025\u306b\u5bfe\u7b56\u3092\u884c\u308f\u306a\u3044\u3068\u653b\u6483\u5bfe\u8c61\u306b\u306a\u308b\u30ea\u30b9\u30af\u304c\u751f\u3058\u307e\u3059\u3002<\/p>\n<p>\u300c2022 \u5e74\u306b\u65e5\u5e38\u7684\u306b\u60aa\u7528\u3055\u308c\u305f\u4e0a\u4f4d\u306e\u8106\u5f31\u6027\u300d\u30c8\u30c3\u30d712\u3000\u203b\u9ec4\u8272\u306fRCE<\/p>\n<table>\n<tr>\n<th>CVE<\/th>\n<th>\u30d9\u30f3\u30c0\u30fc<\/th>\n<th>\u88fd\u54c1\u540d<\/th>\n<th>\u30bf\u30a4\u30d7<\/th>\n<\/tr>\n<tr>\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2018-13379\" rel=\"noopener\" target=\"_blank\">CVE-2018-13379<\/a><\/td>\n<td>Fortinet<\/td>\n<td>FortiOS and FortiProxy<\/td>\n<td>SSL VPN credential exposure<\/td>\n<\/tr>\n<tr style=\"background-color: yellow;\">\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-31207\" rel=\"noopener\" target=\"_blank\">CVE-2021-34473<\/a><br \/>\n        (Proxy Shell)<\/td>\n<td>Microsoft<\/td>\n<td>Exchange Server<\/td>\n<td>RCE<\/td>\n<\/tr>\n<tr>\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-31207\" rel=\"noopener\" target=\"_blank\">CVE-2021-31207<\/a><br \/>\n        (Proxy Shell)<\/td>\n<td>Microsoft<\/td>\n<td>Exchange Server<\/td>\n<td>Security Feature Bypass<\/td>\n<\/tr>\n<tr>\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-34523\" rel=\"noopener\" target=\"_blank\">CVE-2021-34523<\/a><br \/>\n        (Proxy Shell)<\/td>\n<td>Microsoft<\/td>\n<td>Exchange Server<\/td>\n<td>Elevation of Privilege<\/td>\n<\/tr>\n<tr style=\"background-color: yellow;\">\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-40539\" rel=\"noopener\" target=\"_blank\">CVE-2021-40539<\/a><\/td>\n<td>Zoho ManageEngine<\/td>\n<td>ADSelfService Plus<\/td>\n<td>RCE\/<br \/>\n        Authentication Bypass<\/td>\n<\/tr>\n<tr>\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-26084\" rel=\"noopener\" target=\"_blank\">CVE-2021-26084<\/a><\/td>\n<td>Atlassian<\/td>\n<td>Confluence Server and Data Center<\/td>\n<td>Arbitrary code execution<\/td>\n<\/tr>\n<tr style=\"background-color: yellow;\">\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-44228\" rel=\"noopener\" target=\"_blank\">CVE-2021- 44228<\/a><br \/>\n        (Log4Shell)<\/td>\n<td>Apache<\/td>\n<td>Log4j2<\/td>\n<td>RCE<\/td>\n<\/tr>\n<tr style=\"background-color: yellow;\">\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2022-22954\" rel=\"noopener\" target=\"_blank\">CVE-2022-22954<\/a><\/td>\n<td>VMware<\/td>\n<td>Workspace ONE Access<br \/>and Identity Manager<\/td>\n<td>RCE<\/td>\n<\/tr>\n<tr>\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2022-22960\" rel=\"noopener\" target=\"_blank\">CVE-2022-22960<\/a><\/td>\n<td>VMware<\/td>\n<td>Workspace ONE Access, Identity Manager,<br \/>and vRealize Automation<\/td>\n<td>Improper Privilege Management<\/td>\n<\/tr>\n<tr>\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2022-1388\" rel=\"noopener\" target=\"_blank\">CVE-2022-1388<\/a><\/td>\n<td>F5 Networks<\/td>\n<td>BIG-IP<\/td>\n<td>Missing Authentication Vulnerability<\/td>\n<\/tr>\n<tr style=\"background-color: yellow;\">\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2022-30190\" rel=\"noopener\" target=\"_blank\">CVE-2022-30190<\/a><\/td>\n<td>Microsoft<\/td>\n<td>Multiple Products<\/td>\n<td>RCE<\/td>\n<\/tr>\n<tr style=\"background-color: yellow;\">\n<td><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2022-26134\" rel=\"noopener\" target=\"_blank\">CVE-2022-26134<\/a><\/td>\n<td>Atlassian<\/td>\n<td>Confluence Server and Data Center<\/td>\n<td>RCE<\/td>\n<\/tr>\n<\/table>\n<p>\u51fa\u5178\uff1a<a href=\"https:\/\/www.cisa.gov\/news-events\/cybersecurity-advisories\/aa23-215a\" rel=\"noopener\" target=\"_blank\">https:\/\/www.cisa.gov\/news-events\/cybersecurity-advisories\/aa23-215a<\/a><\/p>\n<p>\u7279\u306b\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u653b\u6483\u306e\u5834\u5408\u3001\u88ab\u5bb3\u304c\u51fa\u308b\u307e\u3067\u653b\u6483\u306b\u6c17\u3065\u304b\u306a\u3044\u30b1\u30fc\u30b9\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u77e5\u3089\u306a\u3044\u9593\u306b\u653b\u6483\u3055\u308c\u3066\u3044\u3066\u3001\u6c17\u3065\u3044\u305f\u6642\u70b9\u3067\u306f\u65e2\u306b\u5927\u304d\u306a\u88ab\u5bb3\u306b\u767a\u5c55\u3057\u3066\u3044\u305f\u3068\u3044\u3046\u53ef\u80fd\u6027\u3082\u3042\u308b\u305f\u3081\u6ce8\u610f\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E3%83%AA%E3%83%A2%E3%83%BC%E3%83%88%E3%82%B3%E3%83%BC%E3%83%89%E5%AE%9F%E8%A1%8C%E3%82%92%E5%BC%95%E3%81%8D%E8%B5%B7%E3%81%93%E3%81%993%E5%A4%A7%E5%8E%9F%E5%9B%A0\"><\/span>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u5f15\u304d\u8d77\u3053\u30593\u5927\u539f\u56e0<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306f\u3001\u3055\u307e\u3056\u307e\u306a\u8106\u5f31\u6027\u3092\u60aa\u7528\u3057\u3066\u8d77\u3053\u308a\u307e\u3059\u3002<\/p>\n<p>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u5f15\u304d\u8d77\u3053\u3059\u8106\u5f31\u6027\u3068\u3057\u3066\u3001\u4ee5\u4e0b\u306e3\u3064\u304c\u4ee3\u8868\u7684\u306a\u3082\u306e\u3067\u3059\u3002<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed2-1.jpg\" alt=\"\" width=\"1200\" height=\"510\" class=\"aligncenter size-full wp-image-6002\" srcset=\"https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed2-1.jpg 1200w, https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed2-1-300x128.jpg 300w, https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed2-1-1024x435.jpg 1024w, https:\/\/wpmake.jp\/contents\/wp-content\/uploads\/2023\/11\/unnamed2-1-768x326.jpg 768w\" sizes=\"(max-width: 1200px) 100vw, 1200px\" \/><\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%83%BB%E3%82%A4%E3%83%B3%E3%82%B8%E3%82%A7%E3%82%AF%E3%82%B7%E3%83%A7%E3%83%B3%EF%BC%88Injection%EF%BC%89\"><\/span>\u30fb\u30a4\u30f3\u30b8\u30a7\u30af\u30b7\u30e7\u30f3\uff08Injection\uff09<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u30a4\u30f3\u30b8\u30a7\u30af\u30b7\u30e7\u30f3\u306f\u3001\u5916\u90e8\u5165\u529b\u3092\u53d7\u3051\u4ed8\u3051\u308b\u30d7\u30ed\u30b0\u30e9\u30e0\u306b\u5bfe\u3057\u3066\u4e0d\u6b63\u306a\u6587\u5b57\u5217\u3092\u6ce8\u5165\u3067\u304d\u308b\u8106\u5f31\u6027\u3067\u3059\u3002<\/p>\n<p>\u5916\u90e8\u304b\u3089\u306e\u30c7\u30fc\u30bf\u5165\u529b\u3092\u53d7\u3051\u4ed8\u3051\u308b\u969b\u306e\u30c7\u30fc\u30bf\u30c1\u30a7\u30c3\u30af\u306b\u554f\u984c\u304c\u3042\u308b\u3068\u3001\u30d7\u30ed\u30b0\u30e9\u30e0\u306f\u4e0d\u6b63\u306a\u6587\u5b57\u5217\u3067\u3042\u3063\u3066\u3082\u30b3\u30de\u30f3\u30c9\u306e\u4e00\u90e8\u3068\u3057\u3066\u89e3\u91c8\u3057\u3066\u3057\u307e\u3044\u307e\u3059\u3002<\/p>\n<p>\u305d\u306e\u7d50\u679c\u3001\u30d7\u30ed\u30b0\u30e9\u30e0\u306e\u7570\u5e38\u7d42\u4e86\u3084\u975e\u516c\u958b\u60c5\u5831\u306e\u6f0f\u6d29\u304c\u767a\u751f\u3057\u307e\u3059\u3002<\/p>\n<p>\u30a4\u30f3\u30b8\u30a7\u30af\u30b7\u30e7\u30f3\u653b\u6483\u304c\u6210\u529f\u3059\u308b\u3068\u653b\u6483\u8005\u306e\u601d\u3044\u901a\u308a\u306b\u30b3\u30fc\u30c9\u304c\u5b9f\u884c\u3067\u304d\u308b\u3088\u3046\u306b\u306a\u308a\u3001\u4e0d\u6b63\u30ed\u30b0\u30a4\u30f3\u3084\u30c7\u30fc\u30bf\u6539\u3056\u3093\u306b\u7e4b\u304c\u308a\u307e\u3059\u3002<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%83%BB%E5%A2%83%E7%95%8C%E5%A4%96%E6%9B%B8%E3%81%8D%E8%BE%BC%E3%81%BF%EF%BC%88Out-of-Bounds_Write%EF%BC%89\"><\/span>\u30fb\u5883\u754c\u5916\u66f8\u304d\u8fbc\u307f\uff08Out-of-Bounds Write\uff09<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u5883\u754c\u5916\u66f8\u304d\u8fbc\u307f\u3068\u306f\u3001\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\u306e\u30d0\u30c3\u30d5\u30a1\uff08\u30e1\u30e2\u30ea\uff09\u9818\u57df\u5916\u306b\u30c7\u30fc\u30bf\u3092\u66f8\u304d\u8fbc\u3080\u8106\u5f31\u6027\u3067\u3059\u3002<\/p>\n<p>\u3053\u306e\u8106\u5f31\u6027\u3092\u60aa\u7528\u3059\u308b\u3068\u3001\u653b\u6483\u8005\u306f\u30d7\u30ed\u30b0\u30e9\u30e0\u304c\u60f3\u5b9a\u3057\u3066\u3044\u308b\u9818\u57df\u5916\u306b\u3042\u308b\u30a2\u30c9\u30ec\u30b9\u3078\u30a2\u30af\u30bb\u30b9\u3067\u304d\u3066\u3057\u307e\u3044\u307e\u3059\u3002<\/p>\n<p>\u5883\u754c\u5916\u66f8\u304d\u8fbc\u307f\u304c\u5b9f\u884c\u3055\u308c\u308b\u3068\u3001\u610f\u56f3\u3057\u306a\u3044\u30e1\u30e2\u30ea\u9818\u57df\u4e0a\u3067\u4e0a\u66f8\u304d\u3059\u308b\u3053\u3068\u306b\u3088\u308b\u30c7\u30fc\u30bf\u306e\u7834\u640d\u3084\u60c5\u5831\u6f0f\u6d29\u3001\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306a\u3069\u3092\u5f15\u304d\u8d77\u3053\u3057\u307e\u3059\u3002<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%83%BB%E5%AE%89%E5%85%A8%E3%81%A7%E3%81%AA%E3%81%84%E3%83%87%E3%82%B7%E3%83%AA%E3%82%A2%E3%83%A9%E3%82%A4%E3%82%BA%EF%BC%88Insecure_Deserialization%EF%BC%89\"><\/span>\u30fb\u5b89\u5168\u3067\u306a\u3044\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\uff08Insecure Deserialization\uff09<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u30d7\u30ed\u30b0\u30e9\u30e0\u3092\u5b9f\u884c\u30fb\u518d\u958b\u3059\u308b\u6642\u306b\u3001\u5b9f\u884c\u4e2d\u306e\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u3092\u6271\u3044\u3084\u3059\u3044\u3088\u3046\u306b\u4e00\u3064\u306e\u30d0\u30a4\u30c8\u5217\u306b\u5909\u63db\u3059\u308b\u51e6\u7406\u3092\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u3068\u547c\u3073\u307e\u3059\u3002<\/p>\n<p>\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u3068\u306f\u3001\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u3055\u308c\u305f\u30c7\u30fc\u30bf\u3092\u5143\u306e\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u306b\u5fa9\u5143\u3059\u308b\u64cd\u4f5c\u306e\u3053\u3068\u3067\u3059\u3002<\/p>\n<p>\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u51e6\u7406\u306e\u969b\u306b\u3001\u30d0\u30a4\u30c8\u5217\u3092\u4e0d\u6b63\u306b\u64cd\u4f5c\u3059\u308b\u3053\u3068\u3067\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u306e\u30d5\u30a3\u30fc\u30eb\u30c9\u3092\u6539\u5909\u3067\u304d\u3066\u3057\u307e\u3044\u307e\u3059\u3002<\/p>\n<p>\u3053\u306e\u3088\u3046\u306a\u8106\u5f31\u6027\u3092\u300c\u5b89\u5168\u3067\u306a\u3044\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u300d\u3068\u547c\u3073\u307e\u3059\u3002<\/p>\n<p>\u5b89\u5168\u3067\u306a\u3044\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u3092\u60aa\u7528\u3059\u308b\u3053\u3068\u3067\u3001\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u5f15\u304d\u8d77\u3053\u3059\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E3%83%AA%E3%83%A2%E3%83%BC%E3%83%88%E3%82%B3%E3%83%BC%E3%83%89%E5%AE%9F%E8%A1%8C%E3%81%AB%E3%82%88%E3%82%8A%E8%B5%B7%E3%81%93%E3%82%8A%E3%81%88%E3%82%8B%E8%A2%AB%E5%AE%B3\"><\/span>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306b\u3088\u308a\u8d77\u3053\u308a\u3048\u308b\u88ab\u5bb3<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Web\u30b5\u30fc\u30d0\u30fc\u304c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u653b\u6483\u3092\u53d7\u3051\u308b\u3068\u3001\u653b\u6483\u8005\u306b\u7ba1\u7406\u8005\u6a29\u9650\u3067\u30a2\u30af\u30bb\u30b9\u3055\u308c\u3066\u3057\u307e\u3046\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u3082\u3057\u305d\u3046\u306a\u3063\u305f\u5834\u5408\u306f\u3001\u30d5\u30a1\u30a4\u30eb\u306e\u6539\u3056\u3093\u3084\u30e6\u30fc\u30b6\u30fc\u60c5\u5831\u306e\u6f0f\u6d29\u306b\u7e4b\u304c\u308b\u53ef\u80fd\u6027\u3082\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u4f8b\u3048\u3070\u3001\u4ee5\u4e0b\u306e\u3088\u3046\u306a\u64cd\u4f5c\u3092\u5b9f\u884c\u3055\u308c\u308b\u5371\u967a\u6027\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<ul>\n<li>\u30b7\u30b9\u30c6\u30e0\u3078\u306e\u4fb5\u5165<\/li>\n<li>\u6a29\u9650\u6607\u683c<\/li>\n<li>\u65b0\u3057\u3044\u7ba1\u7406\u8005\u30a2\u30ab\u30a6\u30f3\u30c8\u306e\u4f5c\u6210<\/li>\n<li>\u30c7\u30fc\u30bf\u6f0f\u6d29<\/li>\n<li>\u30b5\u30fc\u30d3\u30b9\u62d2\u5426\uff08DoS\uff09<\/li>\n<li>\u30e9\u30f3\u30b5\u30e0\u30a6\u30a7\u30a2\u306e\u62e1\u6563<\/li>\n<\/ul>\n<p>\u30b7\u30b9\u30c6\u30e0\u3078\u4fb5\u5165\u3055\u308c\u305f\u3053\u3068\u306b\u6240\u6709\u8005\u304c\u6c17\u3065\u304b\u306a\u3044\u307e\u307e\u3001\u653b\u6483\u8005\u306f\u7ba1\u7406\u8005\u6a29\u9650\u3092\u7528\u3044\u3066\u3055\u307e\u3056\u307e\u306a\u64cd\u4f5c\u3092\u884c\u3063\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\n<p>\u305d\u306e\u305f\u3081\u88ab\u5bb3\u306f\u5f90\u3005\u306b\u62e1\u5927\u3057\u3066\u3044\u304d\u3001\u6700\u7d42\u7684\u306b\u306f\u30e6\u30fc\u30b6\u30fc\u3078\u88ab\u5bb3\u3092\u4e0e\u3048\u3066\u4f01\u696d\u306e\u4fe1\u983c\u6027\u304c\u4f4e\u4e0b\u3059\u308b\u3088\u3046\u306a\u30b1\u30fc\u30b9\u3084\u3001\u30b7\u30b9\u30c6\u30e0\u304c\u30b9\u30c8\u30c3\u30d7\u3057\u3066\u4e8b\u696d\u304c\u7d99\u7d9a\u3067\u304d\u306a\u304f\u306a\u308b\u3088\u3046\u306a\u30b1\u30fc\u30b9\u306b\u9665\u308b\u5371\u967a\u6027\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"WordPress%E3%82%B5%E3%82%A4%E3%83%88%E3%81%A7%E3%81%AE%E4%BA%8B%E4%BE%8B\"><\/span>WordPress\u30b5\u30a4\u30c8\u3067\u306e\u4e8b\u4f8b<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>WordPress\u95a2\u9023\u3067\u306f\u30012020\u5e749\u6708\u306bWordPress\u306e\u30d5\u30a1\u30a4\u30eb\u7ba1\u7406\u30d7\u30e9\u30b0\u30a4\u30f3\u300cFile Manager\u300d\u3067\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306e\u8106\u5f31\u6027\u304c\u767a\u898b\u3055\u308c\u305f\u4e8b\u4f8b\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>File Manager\u306f\u3001\u30d5\u30a1\u30a4\u30eb\u3084\u30d5\u30a9\u30eb\u30c0\u3092\u30d0\u30c3\u30af\u30a8\u30f3\u30c9\u304b\u3089\u7de8\u96c6\u3057\u305f\u308a\u30a2\u30c3\u30d7\u30ed\u30fc\u30c9\u3057\u305f\u308a\u3067\u304d\u308b\u4fbf\u5229\u306a\u30d7\u30e9\u30b0\u30a4\u30f3\u3067\u300170\u4e07\u4ee5\u4e0a\u306e\u30b5\u30a4\u30c8\u3067\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u5b9f\u7e3e\u304c\u3042\u308a\u307e\u3057\u305f\uff082020\u5e749\u6708\u6642\u70b9\uff09\u3002<\/p>\n<p>\u3057\u304b\u3057\u30012020\u5e74\u306b\u8a8d\u8a3c\u3055\u308c\u3066\u3044\u306a\u3044\u30e6\u30fc\u30b6\u30fc\u3067\u3082\u4efb\u610f\u306e\u30d5\u30a1\u30a4\u30eb\u3092\u30a2\u30c3\u30d7\u30ed\u30fc\u30c9\u3067\u304d\u3066\u3057\u307e\u3046\u8106\u5f31\u6027\uff08<a href=\"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2020-25213\" rel=\"noopener\" target=\"_blank\">CVE-2020-25213<\/a>\uff09\u304c\u767a\u898b\u3001\u516c\u8868\u3055\u308c\u307e\u3057\u305f\u3002<\/p>\n<p>\u8106\u5f31\u6027\u306e\u767a\u8868\u3068\u540c\u6642\u671f\u306b\u30d9\u30f3\u30c0\u30fc\u304b\u3089\u4fee\u6b63\u7248\u304c\u516c\u958b\u3055\u308c\u307e\u3057\u305f\u304c\u3001\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u305b\u305a\u306b\u653e\u7f6e\u3057\u305f\u305f\u3081\u88ab\u5bb3\u306b\u3042\u3063\u305f\u30b5\u30a4\u30c8\u3082\u591a\u6570\u3042\u308a\u307e\u3057\u305f\u3002<\/p>\n<p>WordPress\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30d7\u30e9\u30b0\u30a4\u30f3\u3092\u63d0\u4f9b\u3059\u308bWordfence\u3067\u306f\u3001\u8106\u5f31\u6027\u304c\u767a\u898b\u3055\u308c\u3066\u304b\u3089\u308f\u305a\u304b\u6570\u65e5\u9593\u306745\u4e07\u56de\u4ee5\u4e0a\u306e\u653b\u6483\u304c\u884c\u308f\u308c\u305f\u5f62\u8de1\u304c\u3042\u3063\u305f\u3053\u3068\u3092\u660e\u3089\u304b\u306b\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u540c\u7a2e\u306e\u8106\u5f31\u6027\u306f\u3001\u8106\u5f31\u6027\u306b\u95a2\u3059\u308b\u767a\u8868\u76f4\u5f8c\uff08\u307e\u305f\u306f\u767a\u8868\u3059\u308b\u524d\uff09\u304b\u3089\u653b\u6483\u304c\u767a\u751f\u3059\u308b\u305f\u3081\u65e9\u6025\u306b\u5bfe\u7b56\u3092\u884c\u306a\u3046\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u30d7\u30e9\u30b0\u30a4\u30f3\u306e\u7121\u52b9\u5316\u3067\u306f\u5bfe\u7b56\u304c\u4e0d\u5341\u5206\u306a\u5834\u5408\u3082\u3042\u308b\u305f\u3081\u3001\u6700\u65b0\u7248\u306e\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3092\u884c\u3046\u5bfe\u5fdc\u3084\u3001\u4e0d\u8981\u3067\u3042\u308c\u3070\u30d7\u30e9\u30b0\u30a4\u30f3\u3092\u524a\u9664\u3059\u308b\u306a\u3069\u306e\u5bfe\u5fdc\u304c\u4e0d\u53ef\u6b20\u3067\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E5%AF%BE%E7%AD%96\"><\/span>\u5bfe\u7b56<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306e\u8106\u5f31\u6027\u306f\u983b\u7e41\u306b\u767a\u751f\u3059\u308b\u305f\u3081\u3001\u300c\u653b\u6483\u53ef\u80fd\u6027\u3092\u4f4e\u6e1b\u3059\u308b\u5bfe\u7b56\u300d\u3068\u300c\u88ab\u5bb3\u7bc4\u56f2\u3092\u6700\u5c0f\u5316\u3059\u308b\u5bfe\u7b56\u300d\u306e\u4e21\u65b9\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<p>\u8907\u6570\u306e\u5bfe\u7b56\u3092\u4e26\u884c\u3057\u3066\u5b9f\u65bd\u3059\u308b\u3053\u3068\u3067\u3001\u9ad8\u3044\u5b89\u5168\u6027\u3092\u4fdd\u6301\u3067\u304d\u307e\u3059\u3002<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%82%BD%E3%83%95%E3%83%88%E3%82%A6%E3%82%A7%E3%82%A2%E3%82%92%E6%9C%80%E6%96%B0%E3%81%AE%E3%83%90%E3%83%BC%E3%82%B8%E3%83%A7%E3%83%B3%E3%81%AB%E3%82%A2%E3%83%83%E3%83%97%E3%83%87%E3%83%BC%E3%83%88%E3%81%99%E3%82%8B\"><\/span>\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3092\u6700\u65b0\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u306b\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3059\u308b<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u5bfe\u7b56\u306e\u57fa\u672c\u306f\u3001\u5404\u7a2e\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3092\u6700\u65b0\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u306b\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3059\u308b\u3053\u3068\u3067\u3059\u3002<\/p>\n<p>\u7279\u306bWordPress\u304a\u3088\u3073WoedPress\u306e\u30d7\u30e9\u30b0\u30a4\u30f3\u3084\u30c6\u30fc\u30de\u306b\u95a2\u3057\u3066\u306f\u3001\u8106\u5f31\u6027\u767a\u898b\u306e\u60c5\u5831\u304c\u3042\u308c\u3070\u901f\u3084\u304b\u306b\u6700\u65b0\u7248\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<p>\u8106\u5f31\u6027\u3092\u767a\u898b\u3059\u308b\u305f\u3081\u306b\u306f\u3001WordPress\u306e\u8106\u5f31\u6027\u8a3a\u65ad\u30b5\u30fc\u30d3\u30b9\u3092\u5229\u7528\u3059\u308b\u306e\u3082\u826f\u3044\u65b9\u6cd5\u3067\u3059\u3002<\/p>\n<p>\u8106\u5f31\u6027\u8a3a\u65ad\u30b5\u30fc\u30d3\u30b9\u306b\u3064\u3044\u3066\u306f\u3001\u4ee5\u4e0b\u306e\u8a18\u4e8b\u3067\u8a73\u3057\u304f\u89e3\u8aac\u3057\u3066\u3044\u308b\u306e\u3067\u30c1\u30a7\u30c3\u30af\u3057\u3066\u307f\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<p><a href=\"https:\/\/wpmake.jp\/contents\/security\/security\/vulnerability_diagnosis\/\" class=\"l-contents__linkbox\">WordPress\u306e\u8106\u5f31\u6027\u8a3a\u65ad\u30b5\u30fc\u30d3\u30b910\u9078\u3010\u7121\u6599+\u6709\u6599\u3011<\/a><\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%83%87%E3%83%BC%E3%82%BF%E3%81%AE%E3%82%B5%E3%83%8B%E3%82%BF%E3%82%A4%E3%82%B8%E3%83%B3%E3%82%B0%E3%82%92%E8%A1%8C%E3%81%86\"><\/span>\u30c7\u30fc\u30bf\u306e\u30b5\u30cb\u30bf\u30a4\u30b8\u30f3\u30b0\u3092\u884c\u3046<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u30b5\u30cb\u30bf\u30a4\u30ba\u51e6\u7406\u3068\u306f\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u4e0a\u306e\u554f\u984c\u304c\u767a\u751f\u3059\u308b\u7279\u5b9a\u306e\u6587\u5b57\u5217\u3092\u7121\u52b9\u5316\u3059\u308b\u3053\u3068\u3067\u3059\u3002<\/p>\n<p>\u653b\u6483\u8005\u304c\u60aa\u610f\u306e\u3042\u308b\u30b3\u30fc\u30c9\u3092\u5165\u529b\u3057\u305f\u3068\u3057\u3066\u3082\u3001\u30b5\u30cb\u30bf\u30a4\u30b8\u30f3\u30b0\u306b\u3088\u308a\u5358\u306a\u308b\u6587\u5b57\u5217\u3068\u3057\u3066\u51e6\u7406\u3059\u308b\u3053\u3068\u3067\u653b\u6483\u3092\u9632\u5fa1\u3067\u304d\u307e\u3059\u3002<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%83%88%E3%83%A9%E3%83%95%E3%82%A3%E3%83%83%E3%82%AF%E3%81%AE%E7%9B%A3%E8%A6%96%E3%82%92%E8%A1%8C%E3%81%86\"><\/span>\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u76e3\u8996\u3092\u884c\u3046<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u4fb5\u5165\u9632\u6b62\u30b7\u30b9\u30c6\u30e0\uff08IPS\u3001Intrusion Prevention System\uff09\u306f\u3001\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u3084\u30b5\u30fc\u30d0\u30fc\u3092\u76e3\u8996\u3057\u3066\u4e0d\u6b63\u306a\u30a2\u30af\u30bb\u30b9\u3092\u691c\u77e5\u3059\u308b\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b7\u30b9\u30c6\u30e0\u3067\u3059\u3002<\/p>\n<p>\u8106\u5f31\u6027\u3092\u60aa\u7528\u3057\u3088\u3046\u3068\u3059\u308b\u4e0d\u6b63\u306a\u30a2\u30af\u30bb\u30b9\u3092IPS\u304c\u691c\u77e5\u3057\u3066\u7ba1\u7406\u8005\u3078\u901a\u77e5\u3059\u308b\u3053\u3068\u3067\u3001\u653b\u6483\u3092\u672a\u7136\u306b\u9632\u5fa1\u3067\u304d\u307e\u3059\u3002<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%E3%82%A2%E3%82%AF%E3%82%BB%E3%82%B9%E5%88%B6%E5%BE%A1\"><\/span>\u30a2\u30af\u30bb\u30b9\u5236\u5fa1<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u4e07\u304c\u4e00\u3001\u653b\u6483\u3092\u53d7\u3051\u3066\u3057\u307e\u3063\u305f\u5834\u5408\u306b\u30a2\u30af\u30bb\u30b9\u5236\u5fa1\u3092\u5b9f\u65bd\u3057\u3066\u304a\u304f\u3053\u3068\u3067\u3001\u88ab\u5bb3\u3092\u6700\u5c0f\u9650\u306b\u6291\u3048\u3089\u308c\u307e\u3059\u3002<\/p>\n<p>\u6700\u5c0f\u7279\u6a29\u306e\u539f\u5247\u306b\u57fa\u3065\u304d\u30a2\u30af\u30bb\u30b9\u6a29\u3092\u8a2d\u5b9a\u3059\u308b\u3053\u3068\u304c\u63a8\u5968\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<h2><span class=\"ez-toc-section\" id=\"%E3%81%BE%E3%81%A8%E3%82%81\"><\/span>\u307e\u3068\u3081<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Web\u30b5\u30a4\u30c8\u3092\u5371\u967a\u306b\u6652\u3059\u5927\u304d\u306a\u8981\u56e0\u306e\u4e00\u3064\u304c\u8106\u5f31\u6027\u3067\u3059\u3002<\/p>\n<p>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306f\u60aa\u7528\u3055\u308c\u308b\u983b\u5ea6\u304c\u9ad8\u304f\u653b\u6483\u304c\u5bb9\u6613\u3068\u3044\u3046\u7279\u5fb4\u3092\u6301\u3061\u3001\u653b\u6483\u304c\u6210\u529f\u3059\u308b\u3068\u7121\u5236\u9650\u306b\u64cd\u4f5c\u3092\u5b9f\u884c\u3055\u308c\u3066\u3057\u307e\u3046\u305f\u3081\u5f71\u97ff\u304c\u751a\u5927\u3067\u3059\u3002<\/p>\n<p>\u30b5\u30a4\u30c8\u904b\u55b6\u8005\u306f\u7279\u306b\u6ce8\u610f\u3057\u3066\u5bfe\u7b56\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u3082\u3063\u3068\u3082\u52b9\u679c\u7684\u306a\u5bfe\u7b56\u306f\u3001\u8106\u5f31\u6027\u3092\u628a\u63e1\u3057\u305f\u3089\u65e9\u6025\u306b\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3092\u5b9f\u65bd\u3059\u308b\u3053\u3068\u3067\u3059\u3002\u3053\u308c\u306b\u3088\u308a\u5927\u534a\u306e\u653b\u6483\u3092\u963b\u6b62\u3067\u304d\u307e\u3059\u3002<\/p>\n<p>\u52a0\u3048\u3066\u9069\u5207\u306a\u30a2\u30af\u30bb\u30b9\u5236\u5fa1\u3092\u884c\u3046\u3001\u30b5\u30a4\u30c8\u306e\u8106\u5f31\u6027\u30c1\u30a7\u30c3\u30af\u3092\u5b9a\u671f\u7684\u306b\u884c\u3046\u3001\u3068\u3044\u3063\u305f\u57fa\u672c\u7684\u306a\u5bfe\u7b56\u3092\u91cd\u306d\u3066\u3044\u304f\u3053\u3068\u3067\u3001WordPress\u30b5\u30a4\u30c8\u3092\u3088\u308a\u5b89\u5168\u306b\u4fdd\u3064\u3053\u3068\u304c\u53ef\u80fd\u3067\u3059\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\uff08RCE\uff09\u306f\u3001\u9060\u9694\u304b\u3089\u9001\u4fe1\u3055\u308c\u305f\u30b3\u30fc\u30c9\u304c\u5b9f\u884c\u53ef\u80fd\u306b\u306a\u308b\u8106\u5f31\u6027\u3067\u3059\u3002WordPress\u30b5\u30a4\u30c8\u3067\u3053\u306e\u8106\u5f31\u6027\u304c\u60aa\u7528\u3055\u308c\u308b\u3068\u30da\u30fc\u30b8\u306e\u6539\u3056\u3093\u3084\u30de\u30eb\u30a6\u30a7\u30a2\u8a2d\u7f6e\u306a\u3069\u3055\u307e\u3056\u307e\u306a\u88ab\u5bb3\u304c\u767a\u751f\u3059\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002\u672c\u8a18\u4e8b\u3067\u306f\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306e\u5371\u967a\u6027\u3068\u30b5\u30a4\u30c8\u904b\u55b6\u8005\u304c\u53d6\u308b\u3079\u304d\u5bfe\u7b56\u3092\u307e\u3068\u3081\u307e\u3057\u305f\u3002<\/p>\n","protected":false},"author":3,"featured_media":6066,"parent":0,"menu_order":0,"template":"","format":"standard","meta":{"_acf_changed":false,"jetpack_post_was_ever_published":false,"footnotes":""},"categories":[],"class_list":["post-6000","security","type-security","status-publish","format-standard","has-post-thumbnail","hentry"],"acf":[],"aioseo_notices":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/security\/6000"}],"collection":[{"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/security"}],"about":[{"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/types\/security"}],"author":[{"embeddable":true,"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/users\/3"}],"version-history":[{"count":6,"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/security\/6000\/revisions"}],"predecessor-version":[{"id":6110,"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/security\/6000\/revisions\/6110"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/media\/6066"}],"wp:attachment":[{"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/media?parent=6000"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wpmake.jp\/contents\/wp-json\/wp\/v2\/categories?post=6000"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}