Microsoft · Outlook Web Access · CVE-2008-2143
**Name of the Vulnerable Software and Affected Versions**
Microsoft Outlook Web Access (OWA) (affected versions not specified)
**Description**
The issue concerns the use of the Cache-Control: no-cache HTTP directive instead of no-store in Microsoft Outlook Web Access (OWA), which could lead to web browsers caching sensitive information, as they follow RFC-2616.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.