Vulnerability Details CVE-2008-2143
Unspecified versions of Microsoft Outlook Web Access (OWA) use the Cache-Control: no-cache HTTP directive instead of no-store, which might cause web browsers that follow RFC-2616 to cache sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 63.2%
CVSS Severity
CVSS v2 Score 1.9
Products affected by CVE-2008-2143
-
cpe:2.3:a:microsoft:outlook_web_access:-
-
cpe:2.3:a:microsoft:outlook_web_access:2003
-
cpe:2.3:a:microsoft:outlook_web_access:2016