Cross-Domain Vulnerability in Outlook Express MHTML Protocol Handler
Systems Affected Microsoft Windows systems Overview A cross-domain vulnerability in the Outlook Express MIME Encapsulation of Aggregate HTML Documents (MHTML) protocol handler could allow an attacker to execute arbitrary code with the privileges of the user invoking the handler. The attacker may also be able to read and manipulate data on web sites in other domains or zones. Description There is a cross-domain vulnerability in the way the Outlook Express…
Read More
