http://www.ipa.go.jp/security/vuln/CWE.html
http://www.ipa.go.jp/security/vuln/documents/website_security.pdf