ﺐﻟﺎﻄﻣ
ﺖﺳﺮﻬﻓ
ﺐﻟﺎﻄﻣ
ﺖﺳﺮﻬﻓ
..................................................................................................................................................................2
ﻪﻣﺪﻘﻣ
.................................................................................................................................................................................3
ﻪﺻﻼﺧ
...............................................................................................................................................................................5
ﻲﺳﺎﻨﺷ
شور
.....................................................................................................................................................................6
ياﺮﺟا ﺘﻳﺎﺳ
ﻦﻴﺑ
ﺖﭙﻳﺮﻜﺳاﻲ
-
A
1
- Cross Site Scripting (Xss)
..............................................................................10
ﻲﻘﻳرﺰﺗ
يﺎﻫ
ﻒﻌﺿ
-
A
2
- Injection Flows
...............................................................................................................14
بﺮﺨﻣ
ﻞﻳﺎﻓ
ياﺮﺟا
-
A
3
- Malicious File Execution
.............................................................................................18
عﺎﺟراﻦﻣاﺎﻧﻪﺑ
ﻢﻴﻘﺘﺴﻣ
ﻲﺷ
–
A
4
- Insecure Direct Object Reference
.................................................................22
ﻲﺘﻳﺎﺳ
ﻦﻴﺑ
ﺖﺳاﻮﺧرد
ﻞﻌﺟ
-
A
5
- Cross Site Request Forgery (CSRF)
............................................................26
ﺖﺳردﺎﻧ
يﺎﻄﺧ
ﺖﻳﺮﻳﺪﻣ
و
تﺎﻋﻼﻃا
ﺖﺸﻧ
-
A
6
- Information Leakage and Improper Error Handling
......30
ﺺﻗﺎﻧ
ﺖﺴﺸﻧ
ﺖﻳﺮﻳﺪﻣ
و
ﺖﻳﻮﻫ
زاﺮﺣا
-
A
7
- Broken Authentication and Session Management
.................32
يرﺎﮕﻧﺰﻣر
هﺪﺸﻧ
ﺖﻈﻓﺎﺤﻣ
هرﺎﺒﻧا
-
A
8
– Insecure Cryptographic Storage
.............................................................37
ﻃﺎﺒﺗراتﺎ ﻦﻣاﺎﻧ
–
A
9
– Insecure Communication
..................................................................................................40
ﻪﺑ
ﻲﺳﺮﺘﺳد
ندﺮﻛ
دوﺪﺤﻣ
رد
ﻲﻫﺎﺗﻮﻛ
URL
-
A
10
– Failure to Restrict URL Access
........................................43
ﻲﻳﺎﻬﻧ
ﺪﺼﻘﻣ
......................................................................................................................................................................46
ﻊﺑﺎﻨﻣ
.................................................................................................................................................................................49