An old Microsoft Excel security flaw could allow hackers to hack your entire system, so fix it now


  • CISA adds 18-year-old Excel vulnerability (CVE‑2009‑0238) to KEV catalog
  • Vulnerability Allows RCE via Malicious Excel Files, Patched Long Ago
  • Obsolete systems still under threat; agencies ordered to update patch by April 28

Incredibly, there are still systems vulnerable to the 18-year-old Microsoft Excel vulnerabilities and, unsurprisingly, cybercriminals are taking advantage of this fact.

The US Cybersecurity and Infrastructure Security Agency (CISA) recently updated its Known Exploited Vulnerabilities (KEV) catalog, a list of flaws confirmed to be exploited in the wild, to add CVE-2009-0238, a bug in Microsoft Excel first discovered in 2009.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top