Summary:
A remote Improper Memory Access Vulnerability exists in Microsoft Excel which could allow an attacker who successfully exploited this vulnerability to take complete control of the affected system.
Risk:
Affected Software:
Non-Affected Software:
Additional Information:
A remote attacker could construct a .xls file and put it on a controlled website. When the user opens the .xls file with the Microsoft Internet Explorer, the browser will automatically call Microsoft Excel to open the .xls file. And if specially crafted, this will cause Microsoft Excel to crash; then, the .xls may allow the attacker to execute arbitrary code.
This vulnerability is due to Microsoft Excel's manipulation of specific opcode.
Solution:
Credits:
References: