Microsoft Windows could allow a remote attacker to conduct spoofing attacks, caused by the use of unauthorized digital certificates derived from a Microsoft Certificate Authority. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to spoof content, perform phishing attacks, or perform man-in-the-middle attacks.