cbcvebase.
CVE-2007-2227
published 2007-06-12

CVE-2007-2227: The MHTML protocol handler in Microsoft Outlook Express 6 and Windows Mail in Windows Vista does not properly handle Content-Disposition "notifications," which…

medium4.3CVSS 3.1
AVNACMAuNCPINAN
The MHTML protocol handler in Microsoft Outlook Express 6 and Windows Mail in Windows Vista does not properly handle Content-Disposition "notifications," which allows remote attackers to obtain sensitive information from other Internet Explorer domains, aka "Content Disposition Parsing Cross Domain Information Disclosure Vulnerability."

Affected

1 ranges
VendorProductVersion rangeFixed in
microsoftoutlook_express