Newsletter:

Skip Navigation LinksHome > News > Security > Microsoft warns of Excel flaw

Microsoft warns of Excel flaw

By Shaun Nichols
18 January 2008 07:12AM
Tags: microsoft | warns | excel | flaw

Microsoft is warning users of a flaw in Excel which is already being targeted by hackers..

The company has received reports of attacks attempting to exploit the vulnerability via email.

In order to launch the attack, users must manually launch the malicious file.

A successful exploit could allow the attacker to access the machine with the same rights as the current user.

The flaw affects Excel 2003 Service Pack 2, Excel Viewer 2003, Excel 2002, Microsoft Office Excel 2000 and Excel 2004 for Mac.

Excel 2003 Service Pack 3, Excel 2007 and Excel 2008 for Mac are not believed to be affected by the vulnerability. The Microsoft Office Isolated Conversion Environment protects against the attack.

Microsoft said that the attacks were launched against specific targets, rather than random users.

Because the attack only grants the permissions of the current user, Microsoft said that administrators can minimise the risk by restricting user rights.

The US Computer Emergency Response Team urged users to mitigate the risk of attack by not opening suspicious email attachments.

Copyright © 2008 vnunet.com

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch



Product Reviews

Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Star Rating
On the surface, RoboForm Enterprise starts out looking like a single sign-on product, but that is just on the...
Star Rating
The Symark PowerBroker is a policy-driven, privileged access control application.
Star Rating
The Symark PowerKeeper is a hardened appliance. It comes with a sealed operating system that provides a...
iTnews 2009 Job Survey

TopTopics
(28126) -  top
(3852) -  microsoft
(3275) -  acma
(2688) -  company
(2527) -  telstra
(2513) -  terria
(2225) -  broadband
(2168) -  content
(2157) -  data
(1975) -  isp
(1690) -  nbn
(1650) -  internode
(1597) -  filtering
(1513) -  voip
(1419) -  centre