Security Advisory

CVE-2007-2227

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-06-12 21:00:00
Last updated 2024-08-07 13:23:51
Assigner microsoft
State PUBLISHED

Description

The MHTML protocol handler in Microsoft Outlook Express 6 and Windows Mail in Windows Vista does not properly handle Content-Disposition "notifications," which allows remote attackers to obtain sensitive information from other Internet Explorer domains, aka "Content Disposition Parsing Cross Domain Information Disclosure Vulnerability."