CVE

Id
25584  
CVE No.
CVE-2007-2227  
Status
Candidate  
Description
The MHTML protocol handler in Microsoft Outlook Express 6 and Windows Mail in Windows Vista does not properly handle Content-Disposition "notifications," which allows remote attackers to obtain sensitive information from other Internet Explorer domains, aka "Content Disposition Parsing Cross Domain Information Disclosure Vulnerability."  
Phase
Assigned (20070424)  
Votes
None (candidate not yet proposed)  
Comments