Unspecified versions of Microsoft Outlook Web Access (OWA) use the Cache-Control: no-cache HTTP directive instead of no-store, which might cause web browsers that follow RFC-2616 to cache sensitive information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/29121 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/42301 | vdb entry |
http://www.kb.cert.org/vuls/id/829876 | third party advisory us government resource |