A hacker published code that takes advantage of an unpatched flaw in the Microsoft spreadsheet software. The code could be used to run unauthorized software on a PC, but it requires that the victim first be tricked into opening an Excel document. Microsoft disputed the notion that this code exploited a vulnerability in its products. The latest attack is worrisome because the code can be executed with little user interaction, an analyst says. All three Excel flaws have cropped up over the past week, including a critical Word flaw.”]
Source: https://www.csoonline.com/article/2121332/third-microsoft-excel-attack-identified–updated-.html