Print Page | Close Window

Vulnerability in Microsoft Outlook

Printed From: LogSat Software
Category: Spam Filter ISP
Forum Name: Spam Filter ISP Support
Forum Description: General support for Spam Filter ISP
URL: https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=5054
Printed Date: 05 February 2025 at 2:43am


Topic: Vulnerability in Microsoft Outlook
Posted By: LogSat
Subject: Vulnerability in Microsoft Outlook
Date Posted: 15 February 2005 at 9:45pm
This does neither apply nor relate to SpamFilter ISP, I am however posting it here on this forum as a first step in making this vulnerability public after several repeated, failed, attempts to have Microsoft acknowledge and fix the flaw.

In simple terms, Microsoft Outlook does not validate correctly the sender in a digitally signed email. This means that anyone can forge a digitally signed email to make it appear as someone else sent it... It does not take a genius to understand how serious this flaw is, knowing that digitally singned emails are used to legally sign documents and verify/trust senders...

The full story is available http://www.logsat.com/Signatures - http://www.logsat.com/Signatures .


-------------
Roberto Franceschetti

http://www.logsat.com" rel="nofollow - LogSat Software

http://www.logsat.com/sfi-spam-filter.asp" rel="nofollow - Spam Filter ISP



Print Page | Close Window