How does the vulnerability work?
The vulnerability is code execution type vulnerability. Microsoft reports that improper memory validation in Excel causes this vulnerability. Attacker successfully exploiting this vulnerability can run code of his or hers choice in the affected machine. Executing arbitrary code is done with the recent privileges of logged user. Microsoft reports that on Excel 2003 vulnerability is exploited when Excel enters Repair Mode.