Viewing articles tagged 'which allows remote attackers to obtain sensitive information by'

 CVE-2009-2431 blog software leaks real username in html comment fix

Some applications place the username of a post's author in an HTML comment, which allows...