CVE
- Id
- 25584
- CVE No.
- CVE-2007-2227
- Status
- Candidate
- Description
- The MHTML protocol handler in Microsoft Outlook Express 6 and Windows Mail in Windows Vista does not properly handle Content-Disposition "notifications," which allows remote attackers to obtain sensitive information from other Internet Explorer domains, aka "Content Disposition Parsing Cross Domain Information Disclosure Vulnerability."
- Phase
- Assigned (20070424)
- Votes
- None (candidate not yet proposed)
- Comments