Microsoft Windows could allow a remote attacker to conduct spoofing attacks, caused by the issuing of an SSL digital certificate because of a misconfigured privileged email account on the live.fi domain. By persuading a victim to visit a Web site containing a specially-crafted certificate, a remote attacker could exploit this vulnerability using man-in-the-middle techniques to cause the victim to spoof content.