The KeePass Password Safe tool contains a function to export these database to an HTML file. The vulnerability, which is restricted to older version of KeePass, stems from the fact that the URLs of entries are embedded in the exported HTML file without using XML special characters.
Open source password keeper to get minor weekend security fix
By
Get the Free Newsletter!
Subscribe to Developer Insider for top news, trends, & analysis