Cross-site request forgery (CSRF) vulnerability in Microsoft Outlook Web Access (owa/ev.owa) 2007 through SP2 allows remote malicious users to hijack the authentication of e-mail users for requests that perform Outlook requests, as demonstrated by setting the auto-forward rule.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft outlook web access 2007 |