Some web application security scanners like Skipfish reports vulnerability "Generic MIME used". In my case this vulnerability was reported for resources like http://my_site/fonts/fontawesome-webfont.ttf, for which Content-Type header returned with response was application/octet-stream.
Is it possible to exploit this kind of vulnerability or is it just a false positive?