This application requires Javascript for optimal performance.

MS.Excel.Window2.Remote.Code.Execution

Release Date

Nov 25, 2011

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a remote Code Execution vulnerability in Microsoft Excel.

The vulnerability is caused by an error when the vulnerable software parses a malformed Window2 record. It may allow remote attackers to execute arbitrary code by sending a crafted Excel file.

Affected Products

Microsoft Excel 2003

Recommended Actions

Currently we are not aware of any official supplied fix for this issue

Coverage

IPS
VCM

Reference/s

http://aluigi.altervista.org/adv/excel_2-adv.txt

Reference: VID-30345