Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Microsoft Outlook Javascript Execution Vulnerability

An issue has been reported in Microsoft Outlook which could cause a user to unknowingly execute Javascript embedded in an HTML email message.

Reportedly, this issue is exploitable if Javascript is embedded in the "about:" or "javascript:" URL of an HREF attribute. Upon the recipient attempting to access the link, embedded Javascript will execute even if scripting is disabled in IE.







 

Privacy Statement
Copyright 2008, SecurityFocus