A security researcher has posted code for an exploit targeting a component of Microsoft Office. The vulnerability lies in a conversion tool used to convert Microsoft Works WPS files into Word RTF files The flaw could allow an attacker to remotely execute code on a user's system. Microsoft repaired the vulnerability as part of its monthly security release on 12 February. When the update was released Microsoft credited discovery of the flaw to iDefense, which in turn credited security researcher Damian Put.
7 Comments - Add comment