Security hole in recent versions of Microsoft Excel

Posted: February 25th, 2009 | Tags: , , |

Experts in security issues from Symantec company warn about presence of dangerous vulnerability in Microsoft Excel of recent versions, the patch for which does not exist now.

Excel Vulnerability

Detected “hole” theoretically allows malefactors to receive unauthorized access to the computer of a victim and to execute any harmful code on it . For the organisation of the attack it is necessary to force user to open the document generated in special way in .xls format. Such file, for example, can be placed on web page or sent by e-mail.

The hole is present in Excel 2007 for operating systems Windows, Excel 2008 for Mac OS X and, quite possibly, earlier updatings of the editor. The situation is aggravated with that cases of operation of vulnerability are already fixed. According to Symantec, through the “hole” cybercriminals install Trojan program Mdropper.AC on computers of victims.

The Microsoft Corp. informs that the problem is being studied, however about the date of release of a patch it is told nothing so far. Perhaps the patch will be included into the next portion of updates of Microsoft which release is planned for March, 10th.

Related posts


Leave a Reply