Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Bill Knox

Pesquisador deMITRE
#52270de 53,633
4CVSS total
Vulnerabilidades · 2
Baixa
2
PT-2008-3656
1.9
2008-05-12
Microsoft · Outlook Web Access · CVE-2008-2143
**Name of the Vulnerable Software and Affected Versions** Microsoft Outlook Web Access (OWA) (affected versions not specified) **Description** The issue concerns the use of the Cache-Control: no-cache HTTP directive instead of no-store in Microsoft Outlook Web Access (OWA), which could lead to web browsers caching sensitive information, as they follow RFC-2616. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2008-3666
2.1
2008-05-12
Microsoft · Internet Explorer · CVE-2008-2159
**Name of the Vulnerable Software and Affected Versions** Microsoft Internet Explorer version 7 **Description** The issue allows local users to potentially obtain sensitive information because encrypted pages can be saved in the cache, even when the DisableCachingOfSSLPages registry setting is enabled. **Recommendations** For Microsoft Internet Explorer version 7, consider disabling the caching of SSL pages by modifying the registry setting to prevent sensitive information from being stored in the cache.