In computer security, a vulnerability is a weakness which can be exploited by a threat actor, such as an attacker, to perform unauthorized actions within a computer system.

Piyush Raj

Sensitive Data Exposure over *, thanks to OptionsBleed for low-hanging fruit

UNESCO Sensitive Data Exposure via OptionsBleed

Date reported — 02–07–2019 # Vulnerable Software — Apache # CVE: CVE-2017–9798 / USN-3425–1 “OptionsBleed” # Type — P1:Sensitive Data Exposure + P5:Fingerprinting/Banner Grabbing # Domain Affected — * # Tested — ( Options Bleed is a use after free error in Apache HTTP that causes a corrupted Allow header…

