Cross-Site scripting



Does anyone know of any incidents involving cross-site scripting and Microsoft Outlook 2003 or 2007? Does the change within Outlook 2007 and it's HTML rendering engine support still leave clients susceptible to this attack?


R4